Practitioner browser extension · version 0.2.0
Practitioner extension privacy notice
This is the privacy notice for the YourVisaSite Practitioner Companion, the Chrome extension available to practitioners an Admin has invited. It is the exact text packaged with the extension and named in its Chrome Web Store listing. The YourVisaSite privacy notice covers the rest of the service.
The extension's purpose is to show reviewed YourVisaSite facts beside an ImmiAccount draft and assist an invited practitioner with copy and controlled autofill. It is independent of the Australian Government and Home Affairs.
It requests sidebar, script-injection, temporary active-tab, clipboard-write, storage and alarms permissions. Storage holds only the value-free outcome delivery queue described below; alarms drives a thirty-second heartbeat that checks snapshot expiry and delivery, with no data of its own. Optional persistent host access is limited to https://online.immi.gov.au/elp/*, the application form path. The code reads only supported application pages while the sidebar has a live authorized connection. It has no cookies, browsing history, network-interception, clipboard-read or all-sites permission.
YourVisaSite sends a reviewed, expiring factual snapshot to the installed extension selected by the practitioner. It remains in memory. No government credentials, MFA, existing government form answers, document files or signed document URLs are sent to YourVisaSite by page inspection. Existing values may be compared locally during a reviewed fill to avoid overwriting them; those values are not returned in learning telemetry.
YourVisaSite records bounded structural observations, value-hash use authorization, reported copy/fill outcomes and explicit mapping assessments. These records are used for access auditing, operational counts and human-reviewed mapping improvement. They are not sold or used for advertising. Client answers and document contents are not used to train a model. No external AI endpoint is called by this build.
The only data the extension keeps on the device is a small delivery queue of reported copy/fill outcomes: operation identifiers, the names of the fields used and a categorical result (copied, filled, skipped, failed), with no values. It exists so that an outcome the sidebar already produced reaches YourVisaSite's audit record even if the connection closes or Chrome restarts first. Each entry is removed once YourVisaSite confirms it or definitively refuses it, and no entry is kept longer than seven days. Removing the extension deletes the queue.
Verify documents opens the YourVisaSite application, which checks current permissions and any required security verification. Opening a document is not certification of authenticity, completeness or immigration eligibility.
An Admin can revoke beta access. The extension can be paused, disconnected or removed, and Chrome's site permission can be withdrawn. Clipboard content already copied is controlled by the device; disconnecting cannot remove copies already made outside the extension. Account privacy requests use YourVisaSite's existing processes. Declared professional/security metadata retention is described in the application's data inventory; beta removal does not silently erase audit history.
This notice describes version 0.2.0 of the YourVisaSite Practitioner Companion as packaged from the reviewed source. The same text is published at https://yourvisasite.com/extension/privacy and is the privacy notice named in the Chrome Web Store listing. Access remains invitation-only: an Admin grants each practitioner an expiring invitation and can withdraw it at any time.