Privacy

This page covers Bookmark Vault, the Chrome extension and the service at sync.matejnovak.si. Operator: Matej Novak. Contact: matej.novak5@gmail.com.

The use of information received from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements.

What we collect

Google sign-in gives us your verified email address and Google account id. We use that only to create your account and to know which vault is yours.

The extension reads Chrome bookmarks on this computer so they can stay in sync. Bookmarks leave the computer encrypted. The server also keeps the vault key for your Google account, so a new computer can sync after sign-in without a second password.

If you turn on telemetry, the server stores event names such as sign-in, sync, and lock, plus a few short codes. It does not store bookmark titles or URLs.

We also store the device name, device type, last seen time, and a hashed session token.

Who sees the data

Google sees your email during sign-in. Cloudflare runs the worker, the database, and the live connection. This data is not sold and is not used for ads.

How long we keep it

Session tokens expire after 30 days. Telemetry older than 30 days is deleted. Vault and device records stay until you delete the account.

Your choices

In the extension you can export bookmarks, remove a device, or delete the account. Deleting the account removes the cloud copy. Bookmarks on that computer stay.

Security

Traffic uses HTTPS and WSS. The vault key is stored on the server, wrapped for your account. Anyone signed in with that Google account can read the bookmarks.

Zasebnost

Google vidi e-pošto ob prijavi. Strežnik hrani ključ trezorja za tvoj račun in šifrirane podatke. Telemetrija je izklopljena, dokler je ne vklopiš, in tedaj grejo samo imena dogodkov. Račun lahko zbrišeš v vtičniku. Upravljavec: Matej Novak, matej.novak5@gmail.com.