Agent Tools

Privacy

The ChatGPT plugins of Agent Tools, such as Company Jobs Finder, Startup Name Check, Package Health Check, Recall Check, Citation Checker, Business Days and Holidays, Tariff Code Finder, EU Business Check, Rules Lookup, Site Check, Travel Check, Food Facts, Car Check, Document Tools and Tax Numbers, keep nothing about you. The only thing stored is a count of calls per tool per day.

Last updated 2026-10-05. Applies to the plugins served from openkrill.app hostnames (for example jobs.openkrill.app, names.openkrill.app, packages.openkrill.app, recalls.openkrill.app, citations.openkrill.app, stores.openkrill.app, businessdays.openkrill.app, tariffs.openkrill.app, eubusiness.openkrill.app, rules.openkrill.app, sitecheck.openkrill.app, travel.openkrill.app, food.openkrill.app, cars.openkrill.app, docs.openkrill.app, tax.openkrill.app, shopduty.openkrill.app and catalogqa.openkrill.app) and to the API at api.openkrill.app and the OAuth connection service at connect.openkrill.app.

What a plugin receives

When you use a plugin in ChatGPT, ChatGPT decides to call one of its tools and sends only that tool's arguments. For Company Jobs Finder those are the company names or careers page links you asked about and any filters (keyword, location, remote, department, posting date, posted salary). For Startup Name Check they are the business names or domains you asked about and the domain endings you chose. For Package Health Check they are the public npm or Python package names and versions you asked about, or the text of a package.json you shared. A package.json is read only for the names and versions in its dependency lists; the rest of the file is ignored, and the file and its dependency list are not stored or cached. Package names and versions are sent to the public sources named below, so do not use private package names. For Citation Checker they are the references you asked about, as text: authors, year, title, journal and DOI. Send it bibliographic details only. For Business Days and Holidays they are a country code, an optional region, the dates or the number of days you asked about, an optional weekend, and a year. For Tariff Code Finder they are the description of a product or a tariff code, a country (UK or US) and an optional country of origin. Describe the product only: never include names, addresses or other personal details. For EU Business Check they are a VAT number and its country, a company name or Legal Entity Identifier, a registry country (France or Norway) and, only if you choose to get a consultation number, your own VAT number. Send the names of companies only: never send the name of a private person. For Rules Lookup they are the CFR title and section you ask about, or the words, document type and dates you search for. Do not put personal details or a description of your own legal situation in a search. For Site Check they are the public web address (or bare domain) of a site you ask about. Send public sites only: addresses with a password or token in them are refused, and so are private and local addresses. For Travel Check they are a country name, up to five country names to compare, or an airport code. Travel Check never asks for your name, passport, nationality, travel dates or itinerary. For Food Facts they are a product barcode, the words of a product search with an optional country, and the allergens you want a product checked against. Food Facts never asks for your name or any health details, so do not include them. For Car Check they are a vehicle identification number (VIN) you ask to decode, or a vehicle year, make and model. Car Check never asks for your name, address, licence plate or mileage. A VIN identifies one vehicle, so send it only if you are comfortable with that. For Recall Check they are the vehicle year, make and model, a vehicle identification number (VIN) you ask to decode, or the product or food name you ask about, plus a number of days. Recall Check never asks for your name, address or licence plate. For Tax Numbers they are a tax year, a filing status, a date and, for an estimate, the income amounts you give; round figures are enough, so never send names, tax identification numbers or account details. For Shop Duty Desk they are order lines (a goods description, an optional tariff code, the country of origin, a quantity and a unit value; lines with a customer name, address or any other customer field are refused), the text of a Shopify Inventory or product CSV you shared, product titles, and a tariff code with amounts. For Catalog QA Desk they are the text of a Shopify product CSV you shared, or the address of a store whose public product feed you ask it to read. Send goods data only: a CSV export of products and inventory holds no customer data, and you should not send order exports. The plugin does not receive your ChatGPT conversation, your name, your email address or your OpenAI account details.

Like any website, the server also sees the network address the request comes from. For plugin calls that is usually an OpenAI server rather than your own device.

What it does with it

What it never does

Service providers

The plugins run on Cloudflare Workers. Cloudflare processes requests on our behalf to deliver them and protect them from attacks, under its own privacy policy. The job boards that are read are public pages of the companies you ask about; the plugin sends them only the request for those public listings. Domain registries receive only the domain name being checked, and the package sources receive only the package names and versions being checked. Crossref, doi.org and OpenAlex receive the reference text you ask Citation Checker about, and operate under their own terms and privacy policies. The stores you ask Store Price Tracker about receive an ordinary request for their public product feed from our servers, not from your device. Nager.Date and OpenHolidays receive only the country code, region and year of the holiday calendar being read. The UK Trade Tariff and the US International Trade Commission receive only the product description or tariff code being looked up. The European Commission (VIES), GLEIF, the French government company search and the Brønnøysund Register Centre receive only the VAT number, company name, LEI or registration number being checked, and for a consultation number the requester's VAT number, under their own terms and privacy policies. The UK Trade Tariff and the US International Trade Commission receive the product titles and tariff codes you ask Shop Duty Desk about. A store you give Catalog QA Desk receives an ordinary request for its public product feed from our servers, not from your device.

API customers

The API at api.openkrill.app works without a key. A call without a key adds to a shared monthly count of billable results, and to a daily count for a coarse bucket of the network address it came from: a short one-way hash of the address and the day, shared by many addresses, that changes every day and is deleted after three days. It is used only to cap how many calls one network can make a day, and the address itself is not stored. With a key, the API stores a hash of the key (never the key itself) and a monthly count of billable results per key. Request contents are handled as described above.

Connecting an agent (OAuth)

An AI agent or MCP client can connect at connect.openkrill.app and receive an access token. There is no account, email address, password or sign-in, and no person is asked anything. To connect, the client registers itself, so we store what it states about itself: its client name and its redirect addresses, which an agent client chooses and which may include a company or product name. Connecting also stores a record of the grant and the issued tokens. Access tokens, authorization codes and client secrets are kept only as hashes, the data attached to a grant is encrypted with a key only the token holder can unwrap, and a grant holds nothing but the client's identifier. We do not store prompts, tool arguments or answers for connected clients, and calls with a token are metered and rate limited under a number derived from the client's identifier, not under a name. A client that has not been used for 90 days is deleted, access tokens last one hour and refresh tokens at most 90 days, and a client can revoke its tokens at any time. The network address of a registration or sign-in attempt is used in memory, for about a minute, to limit repeated attempts, and is not stored. A short event line (the client name at registration, the granted scope, and any error code) is written to our operational logs; it contains no token, argument or address.

Questions and changes

Questions about this policy go through the support page. If what is processed or stored ever changes, this page changes first and its date above is updated.