Privacy
Prompt text stays in your browser.
CrewScore performs structural matching in the page with generated local JavaScript. It does not upload prompt text, file contents, snippets, or source URLs.
Anonymous usage events
On crewscore.ai, CrewScore may send allowlisted anonymous product events to PostHog. Depending on the event, they contain a bounded event name; source, profile, mode, ruleset, product-path, or action/share-kind classifications; coarse score or delta buckets; bounded counts of controls found, configuration smells, or dimensions to fix; traffic classification; and an anonymous session ID. Prompt text, file content, URLs, person profiles, and free-form fields are excluded by code. Every allowlisted request disables PostHog GeoIP enrichment and does not create a PostHog person profile.
You can disable these events on this device from the checker footer. The scoring experience continues to work when analytics is blocked or disabled.
Local files and shared results
A selected local file is read only in the browser. Shared result links encode only a schema version, ruleset, artifact type, and found/missing control IDs. They never include the original prompt.