ContextAlt Free contains no product telemetry and stores no AI-provider credentials. Provider credentials remain in WordPress Settings → Connectors.
When an authorized user explicitly requests a draft, the selected local image and bounded visible context disclosed in the review screen are sent to the site owner’s configured AI provider. Orders, customers, private fields, secrets, and unrelated content are excluded.
ContextAlt stores per-site usage indexes, suggestion history, decisions, settings, and Pro batch/schedule state in the WordPress database. Site owners can choose whether data is retained on uninstall.
Freemius licensing and optional telemetry are isolated to ContextAlt Pro and require consent. The provider’s privacy terms apply after onboarding.
For privacy questions, open a support issue. Report sensitive security matters privately through GitHub Security Advisories.