Privacy Policy for Watchtower

Effective Date: August 11, 2025

Introduction

Your privacy is the entire reason Watchtower exists. Our commitment is to provide you with powerful security insights without ever compromising your personal data. This policy outlines exactly what information the extension handles and, more importantly, what it does not.

The Core Principle: Local-First Analysis

The fundamental design of Watchtower is to perform all sensitive analysis directly on your computer. Your list of extensions, their permissions, and your Browse activity are never transmitted to our servers or any third party.

Information We Handle

To provide its features, Watchtower needs to access certain types of information. Here is a transparent breakdown of what we access and how it's handled:

1. Installed Extension Data (Analyzed Locally)

What we access: The extension scans the names, versions, and permissions of your other installed browser extensions.

Why we access it: This is the core function of Watchtower. This data is used to calculate a privacy score, generate plain-English explanations of permissions, and display them to you in the extension popup.

Data Handling: This analysis happens entirely on your local machine. This information is never sent over the internet.

2. Browse Activity (Analyzed Locally and in Real-Time)

What we access: The extension checks the URL of the website in your currently active tab.

Why we access it: This is required for two key features: to show you which of your extensions are currently active on the page you're visiting, and to trigger the in-page alert if a high-risk extension is active on a sensitive website. For premium users, this is also used to automatically disable extensions on websites you have configured.

Data Handling: This check is performed in real-time. Your Browse history is not stored, logged, or transmitted.

3. User-Created Configuration (Stored Locally)

What we access: The extension stores the "Profiles" and "Monitored Sites" that you create for the premium features.

Data Handling: This configuration is saved using Chrome's built-in storage API, which is private and local to your browser profile. It is never transmitted externally.

4. Anonymous Payment Status (Third-Party Service)

What we access: To manage premium "Suite" features, the extension uses a third-party payment service, ExtensionPay. When you use the extension, it communicates with ExtensionPay's servers using an anonymous ID to check if you are a free or paid user.

Data Handling: We do not send any personal information, Browse data, or your list of extensions to ExtensionPay. The service only knows an anonymous ID and its payment status. Payments are processed securely by Stripe via ExtensionPay.

5. Service Data (Non-Personal)

What we access: For the "Context-Aware" feature, the extension displays the icon (favicon) of the websites you monitor. To do this, it sends the domain name (e.g., "google.com") to a public Google service to fetch the icon.

Data Handling: This request does not include any personal information about you or your account.

Changes to This Policy

We may update this privacy policy from time to time. We will notify you of any changes by posting the new privacy policy on this page.

Contact Us

If you have any questions about this privacy policy, you can contact us at: manitention.blasphemy958@passmail.com