Privacy Policy — Favs
Collection
Favs stores the library you create on this device in the browser (chrome.storage.local): groups, card URLs, titles, notes, tags, reminders, and settings. Saving a tab stores that tab’s URL and title. If you import browser bookmarks, the bookmark tree you chose is read once and copied locally. Files you import are parsed on the device and are not uploaded. A diagnostics log of recent errors stays on the device and is not sent automatically.
Nothing is sent to our servers unless you turn on an optional feature below and give affirmative consent in Settings.
Use
Local data is used only to show and organize your saved links, restore tab sessions, and apply the settings you chose. We do not use it for advertising, profiling, or analytics.
Optional cloud sync. Off by default. If you tick the consent box in Settings and then create an account or sign in, we use your email and password hash to authenticate you, and we store a snapshot of the same library so it can sync across your browsers (last write wins). Data is sent only over HTTPS to the sync provider (Supabase).
Optional webhook. Off by default. If you tick the consent box in Settings and paste a URL, each save is POSTed (event, time, card URL/title/note/tags, group name) to that address. We do not operate the destination.
Sharing
We do not sell user data. We do not transfer it for advertising or unrelated purposes. The only third party that may receive a library snapshot is the sync provider, and only after you consent and sign in. A webhook destination you choose receives save events you enabled. Limited Use: we use data only to provide Favs’ single purpose (a new-tab dashboard of your saved links and sessions), including the Chrome Web Store User Data Policy Limited Use requirements.
Deletion
Export a JSON backup anytime (Settings → Data). Uninstalling Favs deletes local data. Sign out stops further sync from that browser. To delete the cloud snapshot, email fakebylim@gmail.com from the same address. Clearing the webhook URL (or unticking consent) stops further POSTs.
Permissions
storage,unlimitedStorage— keep the library on the device.tabs— URL/title when you save or restore tabs; open saved links; sleep background tabs when you ask.favicon— site icons on cards.contextMenus— right-click “Save to Favs”.alarms,notifications— reminders you set on a card.scripting,activeTab— after an explicit gesture: lasso links or read Open Graph image metadata when you save a page. No host permissions. No background access to every site.sidePanel— the same dashboard in Chrome’s side panel if you choose.bookmarks(optional) — only when you click “Import browser bookmarks”.
What we do not do
- No analytics, telemetry, or tracking pixels.
- No remote code: Favs does not download or execute scripts from the network.
- No scraping of social networks.