PayloadBench policy
Privacy Policy
This policy explains the difference between browser-local tool input and the limited website analytics used to operate PayloadBench.
Effective July 22, 2026
Operator and scope
PayloadBench is operated by SlowGrowth, Hong Kong. This policy covers the PayloadBench website, browser-based tools, and published browser extension.
Pasted tool input
PayloadBench does not intentionally collect, store, or transmit pasted JSON, JWTs, JSONPath queries, JSON Schema content, formatted output, license keys, or clipboard content for core tool processing. Formatting, validation, diffing, decoding, and querying run in browser JavaScript.
Normal site delivery still uses network requests for application assets, consent management, aggregate analytics, and any future billing pages. Those requests must not include pasted tool input.
Google Analytics 4
With consent where required, PayloadBench uses Google Analytics 4 to measure page views, referring pages, approximate location derived from network information, browser and device category, and limited product events such as opening a tool or selecting a feature. These measurements help identify broken pages and understand aggregate product usage.
Analytics events are designed not to contain pasted JSON, JWTs, schemas, query expressions, formatted output, passwords, API keys, or clipboard content. Google may process identifiers and technical data under its own terms as an analytics service provider.
Consent and analytics choices
PayloadBench uses Iubenda to present and store privacy and cookie preferences. You can reject optional analytics when the consent banner appears or reopen Cookie settings from the site footer. Browser privacy controls and supported content blockers can provide additional control.
Browser extension permissions
The PayloadBench browser extension requests:
- clipboardWrite: Used only when you explicitly select Copy to place formatted JSON on the clipboard.
- Content scripts on supported URLs: The extension reads the current page content only to detect and format JSON responses. It does not intentionally transmit that page content for remote formatting.
Payments and digital delivery
Launch Access costs USD 0 and does not initiate checkout. Activation is stored locally in the browser and does not include pasted tool input. If paid subscriptions are introduced, Stripe will process payment data under its own privacy terms. PayloadBench will receive transaction and subscription records needed for access, support, refunds, accounting, and fraud prevention, but will not receive full card numbers.
Retention and disclosure
Aggregate analytics and consent records are retained according to the configured provider settings and applicable legal requirements. Billing records, if paid service is introduced, may be retained for accounting, tax, fraud prevention, and dispute handling. PayloadBench does not sell pasted tool input or intentionally share it with advertising networks.
Independent verification
Open the browser Network panel while using a core tool to check that requests do not contain your pasted input. Analytics requests may still be present when consent allows them; inspect their request payloads separately from the local tool operation.
Privacy requests
Email support@payloadbench.org to ask a privacy question or request access, correction, or deletion where applicable. Include enough detail to identify the relevant account or transaction, but do not include production credentials or full card details.
PayloadBench is operated by SlowGrowth, Hong Kong. Questions can be sent to support@payloadbench.org.