Legal & PoliciesKira Workflow Recorder Privacy Policy
Privacy

Kira Workflow Recorder Privacy Policy

How the Kira Workflow Recorder browser extension handles your data. It records the steps of a task you demonstrate, in one tab you open deliberately, and can hand that recording to the Kira app so the task can be run again.

Effective June 1, 2026Last updated June 2026

1. What this policy covers

This policy applies specifically to Kira Workflow Recorder, the Kira browser extension that records a task you perform so it can be repeated. It is separate from the Kira Privacy Policy covering the kiraai.ai platform, and separate again from the Kira Form Filler Privacy Policy — the two extensions behave differently and make different promises.

The short version

Nothing is recorded until you press Start recording, and then only in the one new tab the extension opens for it. Passwords are never captured. A finished recording is stored in your own browser, and is sent to Kira only when you use the extension with the Kira app — which is what it is for.

2. When it records, and where

Kira Workflow Recorder is inactive until you start a recording. It declares no automatic content scripts, so it is not present on any page you visit in the ordinary course of browsing.

Pressing Start recording opens a new, empty tab. Everything recorded happens in that tab and nowhere else. Your other tabs are never read, never scripted and never recorded, and the extension does not record in the background. The toolbar icon shows a REC badge for as long as a recording is running.

Recording ends when you press Stop, or when you close the recording tab.

3. What a recording contains

A recording is a list of steps. Each step describes one thing you did and how to find the same control again.

CapturedWhy it is needed
The text you typed into a fieldReplay types the same text. This means a recording contains whatever you demonstrated — a name, an email address, a message you sent.
A selector for the element, and its visible textFinding the same control on a later visit, and checking the right one was found
Which option you chose in a dropdown, and whether you ticked a boxReproducing the same choices
The address of each page a step happened onFollowing the same route, and waiting for the right page before continuing

Mouse movement, scrolling and hovering are not recorded. They are not steps worth repeating, and capturing them would bury the recording in noise.

4. Passwords are never recorded

A password field — or any field whose name suggests a secret, such as one containing “password”, “secret”, “token”, “otp”, “cvv” or “cvc” — is recorded as the fact that something was typed there, with no value at all. The text itself is discarded at the moment it would otherwise be stored.

Replay stops and hands it back to you

Because the value was never kept, a replay cannot type it. The run pauses at that step and tells you the field needs your own input. A recording that appeared to log in on your behalf would be a recording that had stored your password.

5. Where a recording goes

A recording is written to chrome.storage.local, in your own browser, on the device you made it on. It is kept there so it survives the extension being put to sleep by the browser, and so you can replay it from the toolbar without the Kira app open.

The extension also answers the Kira web application. When you record a workflow from the Workflows page in Kira, the app asks the extension for the recording and stores it against your Kira account, so the workflow can be run again later. At that point the recording — including the text it contains — reaches Kira's servers and is covered by the Kira Privacy Policy.

Only Kira can ask

The extension will only answer pages served from app.kiraai.ai and app.staging.kiraai.ai. No other website can reach it, ask it to start recording, or read a recording you have made.

There is no analytics, no telemetry and no tracking of any kind in the extension, and it contacts no third party.

6. Why it asks for access to all sites

The extension requests access to all websites because it cannot know in advance which site you will demonstrate a task on. A workflow might live on an internal tool, a supplier portal, or any web application, and a fixed list of sites would make the extension unable to do the thing it exists for.

That access is exercised only inside the single tab opened by Start recording, and only while a recording or a replay is running. Browser pages, the Chrome Web Store and PDF viewers do not accept extension scripts, so nothing is recorded there. Content inside cross-origin frames is not reached.

7. Replay

A replay opens its own fresh tab and performs the recorded steps one at a time, waiting for each control to exist and for pages to settle. A step that cannot be completed stops the run and names the step it stopped on, rather than carrying on and performing the rest of the task in the wrong place.

8. What it never does

  • Never records anything until you press Start recording.
  • Never records outside the tab it opened for the recording.
  • Never stores the contents of a password or other secret field.
  • Never sells or transfers your recordings to third parties.
  • Never uses a recording for any purpose other than replaying the task it describes.
  • Never uses your data to determine creditworthiness or for lending purposes.
  • Never loads or executes remote code — all code ships inside the extension package.

9. Deleting a recording

The extension keeps only your most recent recording, and each new recording replaces it. Removing the extension from your browser deletes what it has stored.

A recording you saved into Kira as a workflow lives in your Kira account and is deleted by deleting that workflow, or by deleting your account. The Data Deletion policy describes that route, and questions can go to support@kiraai.ai.

10. Children

Kira Workflow Recorder is not directed at children under 13.

11. Changes to this policy

If what the extension records, or where a recording is sent, changes in a future version, this policy will be updated before that version ships and the change described here with a revised date.

12. Contact

For any question about privacy in the Kira Workflow Recorder extension, contact support@kiraai.ai.

Frequently asked questions

Quick answers to common questions.

No. It records only inside the new tab it opens when you press Start recording, and only until you press Stop. Your other tabs are never read, and nothing is recorded before you start.

No. Password fields, and fields named like secrets, are stored as the fact that something was typed, with no value. Replay stops at that step so you can type it yourself.

Only when you save one as a workflow in the Kira app. A recording made from the toolbar and replayed from the toolbar stays in your browser. Once saved into Kira it is stored against your account, and the Kira Privacy Policy applies to it.

No. The extension answers only app.kiraai.ai and app.staging.kiraai.ai. Any other page is refused.

Because you choose which site to demonstrate the task on, and it cannot know that in advance. The access is used only in the tab it opened for the recording.