Privacy And Safety
EcoPaste is local-first: history, resource cache, and settings stay on your device. Saving clipboard history does not mean uploading clipboard content to a remote service.
Ignored Apps
Ignored apps prevent content copied from selected sources from entering history. Good candidates include:
- Password managers.
- Key management tools.
- Temporary windows or one-time code tools.
- Work apps whose content should not be recorded.
On macOS, EcoPaste ignores Keychain Access and the Passwords app from macOS 15 by default.
Sensitive Content
EcoPaste detects high-confidence secrets such as private keys, service tokens, AWS keys, and JWTs. Related settings include:
- Save sensitive content: when off, matched content is not saved to history.
- Redacted display: when on, saved sensitive content shows only the first and last characters, replacing the middle with
*.
Clipboard history naturally stores content you copied. Even with ignored apps and redaction enabled, avoid copying long-lived keys, production credentials, or unencrypted private data when possible.
Permissions
On macOS, EcoPaste needs Accessibility and Full Disk Access for quick paste, window control, and required local data access.
On Windows, the administrator launch entry is reserved for system-level capabilities that need elevation. The actual capabilities will be connected as the Windows integration matures.
