Pro is the individual seat. Desktop and browser agents intercept sensitive data the moment you type it (across ChatGPT, Claude, Gemini, Copilot, Grok and Perplexity), covering PII, HIPAA, PCI and GDPR. Zero learning curve. You keep moving. Your data stays yours.
Privacy Twins activate the moment sensitive data is typed or uploaded. Every browser tab, every desktop AI app: ChatGPT, Claude, Gemini, Copilot, Grok, Perplexity.
Names, SSNs, account numbers, patient details, cardholder data, EU personal data: detected and swapped before a prompt ever leaves the device.
The browser extension covers AI on the web. The desktop agent covers native AI apps. Together: privacy for LLM use everywhere you work.
No new tools to learn, no habits to change. You keep using the AI you already love. PrivacyPal works silently underneath.
Okta, Entra, Google Workspace. Sign in with the identity you already use. Central provisioning and de-provisioning belong to Max.
Detection runs on the device. Your data never phones home: not to us, not to anyone. Edge-processing, by design.
Pro is an individual account, licensed to a single named human: your login, your devices, your seat. It is not a team plan and it does not stretch across an organization. That means no domain accounts, no shared seats and no volume discounts. Nine people buying Pro is nine individuals, at one flat price each. When the business itself is what needs protecting, that is PrivacyPal Max: domain accounts, central provisioning and volume pricing from the tenth seat.
Six chat platforms, covered on your Pro account the moment it's installed. Agent surfaces are governed by PrivacyPal Max: each one below links you straight there.
| AI system / agent | What's covered | Pro | Max |
|---|---|---|---|
ChatGPT | Chat appPrompts & uploads twinned in real time, web & desktop | Included | Included |
Claude | Chat appPrompts & attachments twinned, web & desktop | Included | Included |
Gemini | Chat appPrompts & uploads twinned, web & desktop | Included | Included |
Microsoft Copilot | Chat app & copilotChat surfaces twinned, web & desktop | Included | Included |
| Grok | Chat appPrompts & uploads twinned on grok.com & Grok Bot | Included | Included |
| PerplexityNew | Chat appQuestions & attachments protected on perplexity.ai, on by default | Included | Included |
| Claude Code | AgentTerminal & IDE agent sessions, prompts & tool calls governed | – | Max only |
Copilot agents | AgentWhat agent actions can read, write & send, enforced on-device | – | Max only |
| Hermes Agent | AgentCovered via the Nous Portal & default Fireworks endpoints | – | Max only |
| Private MCP | Agent surfaceInternal tools over MCP, without leaking connections to a public host | – | Max only |
Patient names, dates of birth and diagnoses are swapped for Privacy Twins before the prompt leaves your desktop. The letter reads perfectly. The PHI never travels. HIPAA holds.
You paste a deal pipeline into Claude. Privacy Twins swap client names and amounts on the way out, stitch the real ones back on the way in. Same answer. Zero exfiltration.
Real account numbers and PII never leave your Outlook or your helpdesk. Your customer gets a better reply, faster, and nothing sensitive ever leaves the building.
PrivacyPal keeps vendor names, margins and forecasts in-house. The LLM gets statistical-bandwidth-preserving Privacy Twins, and gives you a high-quality answer.