Last updated 26 September 2026 · ImposterShield LLC, a Utah limited liability company
The extension looks at images on pages you visit and reports the ones whose files carry an AI marker. That analysis happens entirely on your own computer. The pages you visit, the images on them, and your browsing history are never sent to us.
Four things do leave your machine, and they are listed below in full. There is nothing else.
The computer scan sends nothing at all. It is a separate download and it makes no network connections whatsoever. Everything in this policy below refers to the browser extension.
Starting with version 0.12.2 the extension carries a detector for pictures whose files hold no AI marker. It needs a model file, which it downloads once from models.impostershield.com the first time it runs and then keeps on your computer: about 23 MB from version 0.12.5 on, roughly 90 MB in versions 0.12.2 through 0.12.4. The pictures themselves, a few frames of the videos you watch (from 0.12.3), and the full-size originals behind search results (from 0.12.5) are all judged on your own computer. Nothing about them is sent to us.
During that one download our server sees your IP address and the standard request headers your browser sends, as any website would. We do not link that to an identity and we do not use it to build a profile.
Once per day the extension sends us two things: a random identifier generated on your computer when you installed it, and the version number of the extension.
That is the entire message. We use it to count roughly how many people still have it installed and which versions are in use, so we know whether a release broke something.
The identifier is a random value. It is not derived from you, your device, your Google account, or anything else about you, and it lets us count installs without identifying anyone. Uninstalling and reinstalling produces a brand new one.
When the extension flags something and you disagree, you can click "This flag is wrong" in the popup. Only then, and only for that one item, we receive:
Nothing is sent unless you click that link. We use these reports to find where the detector is wrong and to make it better.
Starting with version 0.12.4, when a Google or Bing image result comes from Vecteezy or Pixabay, the extension opens that one picture's own page on that site, in the background, to read whether the site itself labels the picture AI-generated. Both sites make their contributors declare AI pictures and print that label on the page.
The request goes straight from your browser to that site, not through us. It asks for the picture's page address on their own site and nothing else. It carries no cookies and no referrer, so it does not say which search you ran, which page you were on, or who you are. Like any website, the site sees your IP address and your browser's standard request headers.
We keep the answer (labelled AI or not) on your computer for the rest of the browsing session so the same picture is not asked about twice, and we ask at most a few pages at a time. Nothing about it is sent to us. No other site's pages are read this way.
Starting with version 0.12.5 there is one more background request of the same kind: when a search result names the address of its full-size original picture, the extension may download that picture from the site hosting it so the on-device detector can look at it. Same rules: the request goes straight from your browser to that site, carries no cookies and no referrer, the picture is judged on your computer, and nothing about it is sent to us.
The free computer scan is a downloadable script, separate from the extension. It transmits nothing. It opens no network connections, contacts no server of ours or anyone else's, and would run identically with the internet unplugged.
It reads the list of programs running on your computer, your background services, the programs set to start with Windows, your installed program list, and which programs are accepting network connections. It compares those against a list of known remote-control, monitoring, AI and automation software that ships inside the scan itself. It never reads the contents of your documents, photos, email or messages.
The report it produces is an HTML file written to your Desktop. It stays on your computer until you delete it. We never see it unless you choose to email it to us.
The scan changes nothing on your computer. It installs nothing, creates no account, and only reads.
On those three sites the extension also looks for the AI label the platform itself puts on a post or a video, and repeats it to you along with who said it. That check happens entirely in your browser by looking at the page already on your screen. Nothing about the video, the post or the page is sent to us or to the platform, and we do not ask the platform anything on your behalf.
From version 0.12.0, on YouTube, TikTok and Facebook the extension also looks at a few frames of the video you are watching for the logos some AI video tools stamp on what they make, such as Sora's. It draws at most six small grey frames of that one video, compares them with the logos on your own computer, and throws them away.
No frame, picture or result is sent to us or to anyone else. Nothing is stored beyond the answer shown in the popup for that tab, which is cleared when you move on.
From version 0.12.1, on Google Images and Bing Images the extension also reads where each result came from: the address of the page it sits on and of the original picture. The search page you are looking at already contains both. It compares them with a list, kept inside the extension, of sites that only publish AI-made pictures.
Nothing is downloaded from those sites and nothing is sent to us. A result from one of them is outlined on the page, and that is all.
The video check page works differently from the extension, because it is built for phones where an extension cannot run. When you paste a link there, the link is sent to our server, which looks up YouTube's public page for that video and reads the label YouTube put on it.
We do not store the link or the result, and we do not tie it to you. There is no account. We keep one count: how many checks run each day, which site the links came from (YouTube, TikTok and so on), and how each check came out (labelled, not labelled, or could not check). That count holds nothing else: no link, no video, no title, no IP address. Our hosting provider, Cloudflare, sees your IP address and the request like any website's host does, and YouTube sees a request from our server, not from you.
If you add the check page to your phone's home screen, it installs a small piece of code that exists only so your phone offers ImposterShield in its Share menu. It stores nothing and sends nothing.
We do not sell data, we do not share it with advertisers or data brokers, and we do not use it for advertising. There is no advertising in this product and no plan to add any.
Chrome shows a broad permission warning because the extension needs to read images on whatever page you are looking at. Fakes can appear anywhere, so it cannot be limited to a list of sites in advance.
What that permission allows and what we actually do with it are different things. It reads images on the page in order to score them locally. It does not read your page content back to us.
The downloaded model, the random install identifier, the date of the last heartbeat, and per-tab results for pages you currently have open. Uninstalling the extension removes all of it.
This product is not directed at children under 13 and we do not knowingly collect information from them.
If we ever start collecting something not listed here, we will update this page and change the date at the top before that version ships. We would rather lose a feature than quietly widen what we collect.
Questions, or a request to delete a report you sent: [email protected]
ImposterShield LLC
1865 South Pleasant Grove Blvd, Suite E
Pleasant Grove, UT 84062, United States