Last updated: 9 September 2026
Stacked Workflows is a Chrome extension, with an optional Claude Desktop add-on, that helps GoHighLevel users manage their own automation workflows. This policy explains what the extension accesses, where that data goes, what our website records, and what we keep about your licence. In short: the extension works through your own logged-in GoHighLevel session, your GoHighLevel data is processed in your browser, and none of it is sent to Stacked Digital. The extension contacts our servers only to validate your licence key and to check for updates. If you turn on the AI add-on, the workflow content Claude works on goes to Anthropic through your own Claude account, as described below.
Workflow reads and writes go directly from your browser to GoHighLevel, using your existing session. Backups and exports you create are downloaded to your own computer. Nothing about your GoHighLevel account is routed through us. The extension makes three kinds of request to servers we control, none of which carry GoHighLevel data: the licence check described below; a fetch of workflows.stackedlabs.io/config.json, a small data file that lets us update GoHighLevel endpoint addresses without a new release (data only, never code); and a fetch of version.json when you open the popup, so it can show an update notice. Those requests carry only standard request metadata such as your IP address, which our hosting provider (Cloudflare) processes to serve them.
To confirm your licence is active, the extension sends your licence key to our licence server (a Cloudflare Worker) when you activate, and re-checks it periodically: about weekly when you open the popup, and daily in the background while you use the extension. The key is the only thing the extension sends; it contains no GoHighLevel data. The server replies with your plan and licence name. We do not keep a log of validation checks beyond the transient request handling Cloudflare performs to serve them.
What we keep about your licence. When you buy, Stripe passes us your name and email address, and we create a licence record containing your licence key, name, email, plan, status (active or revoked), any expiry date, the purchase date and the Stripe checkout, payment and customer references. We use it to validate the key, email it to you, and switch it off automatically on a refund or chargeback. We keep this record for as long as the licence exists and for our accounting obligations afterwards. You can ask us to delete it at any time (see Contact); deleting it deactivates the licence.
If you turn on "Connect to Claude" and install the Claude Desktop add-on, the extension passes your GoHighLevel session token to a small helper (the add-on) running on your own computer, over a local-only connection (127.0.0.1) that accepts requests from this extension alone. The token itself never leaves your machine: the add-on uses it to talk to GoHighLevel on your behalf and to nothing else. While the add-on is on, the extension also gives it a short local record of the most recent GoHighLevel API requests your browser made, capped at the last 150: the method, the address, the response status and, for workflow-builder endpoints only, a short excerpt of the request body with tokens, secrets, email addresses and phone numbers stripped out (login, user, contact and payment requests never include a body). Claude can ask for this record when it needs to understand an endpoint.
What Claude reads does leave your machine. When you ask Claude to list, read, audit, build or edit a workflow, Claude Desktop sends the workflow content it reads (and, if requested, that recent-request record) to Anthropic to generate its reply, under your own Claude account and Anthropic's privacy policy. Stacked Digital never receives any of it. The add-on is off by default, works only with an active licence, and you can turn it off at any time from the extension popup.
Separately from the extension, our marketing website (workflows.stackedlabs.io) records how visitors find and use the site. This runs on every page of this website, never inside the extension, and has no access to your GoHighLevel account or workflow data.
Opting out. To stop our own beacon counting your browser, open any page on this site with ?notrack=1 added to the address (for example workflows.stackedlabs.io/?notrack=1). This stores a flag in your browser's local storage and persists until you clear site data or visit with ?notrack=0. Meta Pixel and Clarity can be blocked with your browser's tracking controls or an ad-blocker.
~/.ghlwf, readable only by your user account) so Claude stays connected between restarts; delete that folder to remove it. The recent-request record is held in memory and vanishes when the add-on stops.We may update this policy as the product evolves. Material changes will be reflected on this page with a new "last updated" date.
Questions about privacy, or a deletion request? Email [email protected].