What leaves your browser
The calculator, the TD.1 helper and the browser extension do their work on your device. This page lists the four things that ever leave it, and when.
Checked against the code on 2026-09-09.
GDPR: privacy and your rights
You can contact us about access, correction or deletion of personal data. Drafts stay in your browser; data you choose to send to chat or support is processed separately. Below we explain what is transmitted and the controls available.
What stays on your device
Everything you type is computed in your browser and kept in its local storage for this site. None of it is sent by us. That covers:
- drafts of the TD.1 return, per tax year;
- the personal details you enter for the return summary (name, tax number and the like);
- the last fifty salary calculations, so you can see your own history;
- an IR63A or TD.1 PDF you open here — it is read on your device by a PDF library and is never uploaded.
Clearing this site's data in your browser removes all of it. The return page also has its own delete controls for drafts.
Usage analytics
The salary calculator sends usage events to PostHog on servers in the European Union (eu.i.posthog.com). No cookies are set; the session lives in memory and ends when you close the tab. What is sent:
- page views with the referring site and campaign parameters, if any;
- one “calculation performed” event: gross salary, tax year, monthly or yearly, family status, number of children, whether the housing, green and insurance options are on, and the exemption mode;
- nothing from the TD.1 helper, the return check or the extension, and never a name or a tax number.
EU AI Act: how we use AI
The assistant uses AI and does not speak for the tax authority. It can make mistakes: check answers before filing. PDFs are read locally; chat messages are sent to OpenAI. Sharing and retention details are explained below.
Your messages and the visible conversation history go through our server (api.abasis.ai) to OpenAI to generate AI answers. We disable saved API responses. OpenAI may still retain content in abuse-monitoring logs, normally for up to 30 days, with exceptions under its policy; other technical retention may apply. This is not Zero Data Retention.
- Current calculator figures are added only when “Share tax data” is on (off by default). Turning it off stops adding current figures; figures already mentioned in messages remain in the history. Start a new chat to stop resending that history.
- nothing from the TD.1 helper or the extension is ever included;
- The chat is held in browser memory. New chat clears the visible history; closing the panel does not. Neither action deletes data already sent to OpenAI. Do not enter names, tax IDs or bank details. AI answers may be wrong; verify them before filing.
AI assistants and browser agents
In browsers that support WebMCP, an agent you use can run salary estimates and, on the declaration page, read and edit your local draft. Returned draft data is accessible to that agent and may be processed under its provider’s privacy policy. These tools do not submit your return. Asking the site assistant through WebMCP sends only the question supplied by the agent to our assistant service; no draft or calculator data is attached automatically. If you connect an AI assistant such as Claude or Codex to our MCP server (api.abasis.ai/mcp), it receives only what the assistant sends: income, deductions and payments for a tax calculation, or a question for the site assistant, which is passed to our AI provider to answer. No account is needed, we do not store what these requests contain, and the draft on your device is never available to them.
Reports you choose to send
Three actions send something, and each one shows you the full text before you press send:
- the feedback form;
- the IR63A import report — how the PDF parsed, with identities absent and amounts replaced unless you choose to include them;
- the filed-return check on /check/ — the same kind of report, anonymised the same way.
All three go to a Google Apps Script that appends them to a spreadsheet on Google's servers. Sending is one-way: the browser cannot see whether the row arrived. Rows are kept for 12 months, and anything can be deleted earlier on request.
The browser extension
Cyprus TD.1 Autofill makes no network requests at all — not to us, not to anyone. It has no server. What it does:
- stores the figures you send it from the return page, and the field bindings you confirm, in the browser's own extension storage;
- reads and writes the tax portal's pages (*.mof.gov.cy) only to show its panel and fill the fields you pressed “fill” for;
- reads this site's pages only to receive the figures when you press “Send to the browser extension”;
- never presses Submit, never clicks, and refuses password, file and hidden fields;
- removes everything it stored when you uninstall it. We receive nothing from it, so there is nothing for us to keep, sell or share.
Hosting
The site is static files served by a hosting provider, which keeps the standard access logs any web server does (address, time, page requested). We do not add to them.
Questions and deletion
To ask what was kept, to have a report row deleted, or to say anything else, write directly:

