Privacy Policy
Last Updated: September 24, 2026
Effective Date: September 24, 2026
Introduction
Welcome to use this browser extension (the "Extension" or "our Service"). We respect and protect the privacy rights of all users. This Privacy Policy (the "Policy") explains how we collect, use, store, share, and protect your personal information.
This Policy applies to all users of this extension, wherever you are located. We are committed to complying with the following laws and regulations:
- EU General Data Protection Regulation (GDPR)
- China Personal Information Protection Law and related regulations
- Taiwan Personal Data Protection Act
- California Consumer Privacy Act (CCPA/CPRA) and other US state laws
Please read this Policy carefully. By using this extension, you agree to the content of this Policy. If you do not agree with any part of this Policy, please stop using this extension.
1. Information Collection and Use
1.1 Types of Information We Collect
1.1.1 Automatically Collected Information
- Bookmark Data: Including bookmark titles, URLs, folder structure, creation/modification times
- Extension Configuration: Your personalization settings and preference options
- Device Information: Browser type, version number, operating system type (for feature adaptation only)
- Usage Statistics: Extension usage frequency, feature click counts (anonymized)
1.1.2 User-Provided Information
- Account Information (if choosing cloud sync): Email address, username
- Feedback Information: Content provided when you submit bug reports or feature suggestions
1.2 Information Usage Purpose
We collect and use your personal information only for the following legitimate purposes:
- Provide Core Features: Bookmark sync, backup, management, and other functions
- Service Improvement: Analyze usage patterns to optimize user experience
- Technical Support: Respond to your questions and feedback
- Security: Detect and prevent fraud and abuse
- Legal Compliance: Meet applicable laws, regulations, or legal process requirements
Legal Basis (GDPR applicable):
- Contract performance (providing services you requested)
- Legitimate interests (service improvement, security)
- Legal obligations (complying with legal requirements)
- User consent (optional features)
2. Data Storage and Security
2.1 Data Storage Location
- Local Storage: Most data is stored on your local device via Chrome Storage API
- Cloud Storage (if you enable cloud sync): Data may be stored on servers in:
- Data centers within the EU (EU users)
- Data centers within mainland China (China mainland users)
- Other data centers complying with local legal requirements
2.2 Data Retention Period
- Active User Data: Continuously saved while you use this extension
- After Account Deletion: Cloud data will be completely deleted within 30 days
- Backup Data: Data in backup systems will be deleted within 90 days
- Log Data: Anonymized logs retained for no more than 12 months
2.3 Security Measures
We take the following measures to protect your data:
- Encrypted Transmission: All network transmissions use TLS 1.3 or higher encryption
- Encrypted Storage: Sensitive data stored on servers using AES-256 encryption
- Access Control: Strictly limit employee access to user data
- Security Audits: Regular security assessments and vulnerability scans
- Incident Response: Establish data breach emergency response mechanism
3. Data Sharing and Disclosure
3.1 We Do Not Sell Your Personal Information
We promise to never sell, rent, or trade your personal information.
3.2 Limited Sharing Scenarios
We only share your information in the following situations:
3.2.1 Service Providers
We may share necessary information with the following types of third-party service providers:
- Cloud Storage Providers: For data sync and backup
- Analytics Providers: For anonymized usage statistics analysis
- Customer Support Tools: For handling your feedback
All third parties sign data processing agreements and comply with the same privacy protection standards as us.
3.2.2 Legal Requirements
We may disclose your information in the following situations:
- Comply with laws, regulations, court orders, or government requirements
- Protect our legitimate rights or others' personal safety
- Detect, prevent, or address fraud, security, or technical issues
3.3 Cross-border Data Transfer
If your data needs to be transferred across borders (e.g., from EU to US), we will:
- Use Standard Contractual Clauses (SCC) approved by the EU Commission
- Ensure data recipients comply with GDPR Article 45 adequacy decisions
- Obtain your explicit consent (if applicable)
China Mainland Users: According to Personal Information Protection Law, cross-border transfers will undergo security assessment and obtain your separate consent.
4. Your Privacy Rights
Depending on your jurisdiction, you may have the following rights:
4.1 Rights Applicable to All Users
- Access Right: View your personal information we hold
- Correction Right: Request correction of inaccurate information
- Deletion Right: Request deletion of your personal information ("right to be forgotten")
- Export Right: Obtain your data in a structured, commonly used format
- Withdraw Consent Right: Withdraw consent you previously gave
4.2 Additional Rights for EU/EEA Users
- Restriction of Processing Right: Request restriction on processing of your information
- Objection Right: Object to data processing based on legitimate interests
- Automated Decision Protection: Not subject to purely automated decisions
- Right to Complain to Supervisory Authority: Lodge complaints with data protection authorities
4.3 Additional Rights for California Users (CCPA/CPRA)
- Right to Know: Learn what personal information we collected
- Deletion Right: Request deletion of personal information (subject to specific exceptions)
- Opt-out Right: Refuse sale/sharing of personal information (we do not sell information)
- Non-discrimination Right: Not discriminated against for exercising privacy rights
4.4 China Mainland Users' Rights
- Right to Know and Decide: Know processing rules and decide whether to consent
- Right to View and Copy: View and copy personal information
- Portability Right: Transfer personal information
- Deletion Right: Request deletion when conditions are met
- Right to Explanation: Request explanation of processing rules
4.5 How to Exercise Your Rights
Please contact us through:
- Email: support@app.itgz8.com
- Extension "Settings → Privacy Settings" feature
We will respond within:
- EU users: 1 month (can extend 2 months in complex cases)
- California users: 45 days (can extend 45 days)
- China mainland users: 15 working days
- Other regions: 30 days
5. Children's Privacy Protection
This extension is not directed at children under 16 years old (13 years for US users). We do not knowingly collect personal information from minors.
If you are a parent or guardian and discover your child has provided personal information to us without consent, please contact us and we will immediately delete the related information.
6. Data Breach Notification
If a data breach occurs that may affect your rights, we will:
- EU Users: Notify supervisory authority within 72 hours of discovery and promptly notify affected users
- China Mainland Users: Immediately take remedial measures and report to competent authorities as required
- California Users: Notify affected users without unreasonable delay
- Other Regions: Notify according to local legal time requirements
7. Privacy Policy Changes
We may update this Policy from time to time. For significant changes, we will:
- Display notifications in prominent locations in the extension
- Notify you by email (if you provided an email)
- Notify at least 30 days before taking effect
Continuing to use this extension indicates your acceptance of the updated Policy. If you do not agree, please stop using this extension.
8. Contact Us
If you have any questions, comments, or requests regarding this Privacy Policy, please contact us:
- Email: support@app.itgz8.com
Supervisory Authorities
If you are not satisfied with our response, you have the right to complain to the following supervisory authorities:
- EU Users: Data protection authority of your member state
- China Mainland Users: Cyberspace Administration or Ministry of Industry and Information Technology
- California Users: California Attorney General's Office
9. Applicable Law
The interpretation and implementation of this Policy is subject to:
- EU/EEA users: GDPR and member state laws
- China mainland users: Laws of the People's Republic of China
- Other region users: Applicable laws of your location
Definitions
- Personal Information/Personal Data: Information capable of identifying a specific natural person
- Processing: Any operation on personal information, including collection, storage, use, transmission, deletion, etc.
- Controller: Entity that determines processing purposes and means (i.e., developer of this extension)
- Processor: Entity that processes personal information on behalf of controller (such as cloud service providers)
- Consent: Free, specific, informed, and unambiguous indication of will
Version History
- v1.0 (2026-09-24): Initial version released
Thank you for trusting and using our service!
If you have any questions, please feel free to contact us through the above methods.