Phishy

Privacy Policy

Last updated: 13 July 2026

Phishy is a Chrome browser extension that detects phishing and malicious websites in real time. This privacy policy explains what data Phishy collects, how it is used, and how it is protected.


What data we collect

Phishy collects and processes the following:

What we do not collect

How we use your data

The URL of each page you visit is sent to:

  1. Our own backend server, which runs a machine learning model to classify the URL as safe or malicious.
  2. The VirusTotal API (only if you have configured an API key), as a secondary check.

Scan results are stored so that Phishy can instantly show you the safety status of a page you've visited before, without re-scanning it every time.

Data sharing

We do not sell, rent, or share your data with third parties, except:

We do not use your data for advertising, profiling, or any purpose unrelated to phishing detection.

Data storage and security

Your scan history, API key, and whitelist settings are stored on our backend server, associated only with your anonymous installation ID — never with your name or any other personally identifying information.

Your choices

Contact

If you have any questions about this privacy policy, please contact: tayyabsheikh.pakistan@gmail.com