emploidai Marketplace

url_extract_images privacy policy

Policy content supplied in the product package by its publisher.

← Back to url_extract_images

Privacy Policy for url_extract_images

Last Updated: December 22, 2024 Version: 0.3.0 Author: dwdecon

Overview

This privacy policy describes how the url_extract_images plugin collects, uses, and protects your data when you use it within the Dify platform.

Data Collection

1. User-Provided Data

The plugin processes the following data provided by users:

  • URLs: Web page URLs or PDF document URLs you want to extract images from
  • Configuration Parameters: Image filtering settings (size thresholds, quantity limits, timeout values)

2. GitHub Credentials

The plugin requires GitHub repository credentials to upload extracted images:

  • GitHub Personal Access Token: Stored as an encrypted secret in Dify
  • Repository Information: Owner, repository name, branch, and path

Data Usage

1. URL Processing

  • The plugin fetches the provided URL to extract images
  • Downloaded content is processed temporarily in memory
  • No permanent storage of fetched web pages or PDF documents

2. Image Upload

  • Extracted images are uploaded to your specified GitHub repository
  • Images are stored in your GitHub account under your control
  • CDN URLs are generated using JSDelivr for public access

3. Metadata Extraction

  • The plugin extracts image metadata (title, size, format) from PDFs
  • This metadata is used to generate semantic filenames
  • All extracted data is returned to you via Dify workflow

Data Storage

1. Plugin-Side Storage

  • No persistent storage: The plugin does not store any user data
  • Temporary processing: All data is processed in memory and discarded after execution
  • No logging: User URLs and content are not logged

2. GitHub Storage

  • Extracted images are uploaded to your GitHub repository
  • You control repository visibility (public/private)
  • You control data retention and deletion policies
  • Images are accessible via your repository settings

Data Sharing

1. Third-Party Services

The plugin interacts with the following external services:

  • GitHub API: To upload images to your repository

    • Only accesses repositories you grant permission to
    • Uses your Personal Access Token for authentication
    • Subject to GitHub Privacy Policy
  • JSDelivr CDN: To provide fast image access

2. No Data Sales

We do not sell, trade, or transfer your data to third parties.

Data Security

1. Credential Protection

  • GitHub tokens are stored as encrypted secrets in Dify
  • Tokens are only used to access your authorized repositories
  • We recommend using fine-grained tokens with minimal scope

2. Transmission Security

  • All API calls use HTTPS encryption
  • GitHub API interactions use Bearer token authentication
  • No credentials are logged or exposed

User Rights

1. Data Access

  • You have full access to images uploaded to your GitHub repository
  • You can view, download, or delete images at any time

2. Data Deletion

  • Delete images directly from your GitHub repository
  • Revoke GitHub token to prevent future uploads
  • Uninstall the plugin from Dify to stop all data processing

3. Data Portability

  • All uploaded images are in standard formats (PNG, JPEG, etc.)
  • You can export or migrate images from your GitHub repository

Privacy Best Practices

1. Repository Visibility

  • Use private repositories for sensitive images
  • Use public repositories only for non-sensitive content
  • Review repository access permissions regularly

2. Token Management

  • Use fine-grained tokens with repository-specific access
  • Limit token scope to "Contents: Read and Write" only
  • Rotate tokens periodically for security

3. Content Awareness

  • Avoid processing URLs containing sensitive information
  • Review extracted images before sharing CDN URLs
  • Be mindful of copyright and licensing when extracting images

Compliance

GDPR Compliance

  • Right to Access: You can access all uploaded images in your repository
  • Right to Erasure: You can delete images and revoke access
  • Data Minimization: We only process necessary data for image extraction
  • Purpose Limitation: Data is used solely for image extraction and upload

CCPA Compliance

  • We do not sell personal information
  • You can request deletion of your data (images in your repository)
  • You can opt-out by uninstalling the plugin

Children's Privacy

This plugin is not intended for users under 13 years of age. We do not knowingly collect data from children.

Changes to This Policy

We may update this privacy policy from time to time. Changes will be reflected in:

  • The plugin version number
  • The "Last Updated" date above
  • Release notes in the GitHub repository

Contact Information

For privacy-related questions or concerns:

Disclaimer

This plugin is provided "as is" without warranty. You are responsible for:

  • Securing your GitHub credentials
  • Managing repository access and visibility
  • Complying with copyright and licensing laws
  • Reviewing extracted content before sharing

Third-Party Links

This privacy policy applies only to the url_extract_images plugin. External services (GitHub, JSDelivr) have their own privacy policies.