Our Privacy Commitment
NeuroBrowse is built on a simple principle: your data is yours. We designed our Chrome extension to be privacy-first, meaning we don't collect, store, or have access to your browsing data, API keys, or AI summaries.
1. Information We Collect
1.1 Information We DO Collect
Account & Subscription Information:
- Email address (for account login and subscription management)
- Payment information (processed securely through Stripe - we never see your credit card details)
- Subscription status (active, cancelled, etc.)
Usage Analytics (Minimal & Non-Identifiable):
- Number of active subscriptions
- General feature usage statistics (non-identifiable, aggregated data only)
- Extension installation/uninstallation events (no personal data)
1.2 Information We DO NOT Collect
We Do Not Collect:
- Your browsing history
- Websites you visit
- Content you summarize
- Your API keys
- AI model responses
- Personal information from pages you browse
- Search queries or user behavior tracking
2. How Your Data Stays Private
2.1 API Keys (Your Credentials)
When you provide your API keys for OpenAI, Anthropic, Google AI, Perplexity, DeepSeek, xAI (Grok), Moonshot (Kimi), Mistral AI, Groq, or Meta (Llama 4):
- Stored Locally: Your API keys are stored exclusively on your device using Chrome's secure local storage - never on our servers
- Never Transmitted to Us: Your keys NEVER pass through NeuroBrowse servers
- Only Sent to AI Providers: Keys are sent directly from your browser to the respective AI provider
- Encrypted by Chrome: Chrome encrypts stored data using your system's credentials
- You Control Them: You can view, update, or delete your API keys anytime in the extension settings
2.2 Page Content & Summaries
When you click "Summarize":
- Direct Communication: Page content is sent directly from your browser to your chosen AI provider
- No Middle Man: NeuroBrowse does not intercept, store, or have access to the content you summarize
- No Summary Storage: AI summaries are displayed in your browser and never stored by NeuroBrowse
- Your Session Only: Summaries exist only in your current browser session
2.3 Authentication & Payment
Account Authentication:
- Login and subscription management require only your email address
- Passwords are hashed and encrypted - we never store plain text passwords
- You can reset your password anytime
Payment Processing (Stripe):
- All payment processing is handled by Stripe, a PCI-DSS compliant payment processor
- We NEVER see or store your credit card details
- Stripe provides us with: subscription status, last 4 digits of card (for your reference), payment success/failure
- You can manage your subscription and payment methods through Stripe's secure customer portal
- Read Stripe's privacy policy: stripe.com/privacy
3. Third-Party Services
3.1 AI Providers
When you use NeuroBrowse, your data is sent directly to AI providers based on your chosen model. We support 10 AI providers:
Important: Each AI provider has their own privacy policy and data handling practices. Please review them to understand how they process your data.
3.2 Payment Processing (Stripe)
For subscription management and billing:
- Stripe processes all payments securely
- We receive minimal data: subscription status, customer ID
- Your full credit card details remain with Stripe only
- Stripe is PCI-DSS Level 1 certified
- Read more: Stripe Privacy Policy
4. Data Security
How We Protect Your Information:
- No Central Database: We don't store browsing data, so there's nothing to breach
- Local Storage Only: API keys stay in your browser, encrypted by Chrome
- HTTPS Everywhere: All communications use encrypted connections
- Minimal Data Collection: We only collect what's necessary (email for beta)
- No Tracking: No cookies, pixels, or analytics trackers on extension
Your Responsibility:
- Keep your API keys secure and don't share them
- Use strong passwords for accounts
- Don't use NeuroBrowse on shared/public computers if you've saved API keys
- Revoke and regenerate API keys if you suspect they're compromised
5. Your Rights & Choices
You Have the Right To:
- Access Your Data: Email us at privacy@neurobrowse.io to request your data
- Delete Your Data: Unsubscribe from emails or request deletion at privacy@neurobrowse.io
- Update Information: Change your email preferences anytime
- Opt-Out: Uninstall the extension removes all local data
- Ask Questions: Contact us about privacy concerns
6. Children's Privacy
NeuroBrowse is not intended for children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us with information, contact us immediately at privacy@neurobrowse.io.
7. Changes to This Policy
We may update this Privacy Policy as NeuroBrowse evolves. Changes will be posted on this page with an updated "Last Updated" date.
Material changes will be communicated via:
- Email to all subscribers
- Notice in the extension
- Update posted on neurobrowse.io
8. Contact Us
Questions about privacy?
Email: privacy@neurobrowse.io
Website: neurobrowse.io
Response time: Within 48 hours
Summary (TL;DR)
What makes NeuroBrowse private:
- Your API keys stay in your browser
- We never see your browsing data
- No tracking or analytics in extension
- Direct connection to AI providers (no middleman)
- Minimal data collection (email + payment via Stripe)
- You control your data completely
What we collect: Your email and payment info (via Stripe - we never see card details)
What we don't collect: Everything else
NeuroNotes — Data & Privacy
NeuroNotes is a browser sidebar sticky notes extension operated by Neurolayer Labs. Like NeuroBrowse, NeuroNotes is built with a privacy-first approach — all your note data stays on your device.
1. Local Data Storage
All note content — including text, images, and voice recordings — is stored locally on the user's device only.
- Text Notes: Stored in chrome.storage.local
- Images (Pasted via Clipboard): Stored in the browser's local IndexedDB database
- Voice Recordings: Stored in the browser's local IndexedDB database
No note data is ever transmitted to, stored on, or accessible by Neurolayer Labs servers or any third party.
2. Authentication & Subscription
Supabase is used solely for user authentication (sign-in) and subscription status verification. No note content passes through Supabase.
2.1 Google OAuth Authentication
Google OAuth authentication opens a new browser tab for sign-in. Only the user's email address is collected for account identification.
2.2 Email/Password Authentication
Email/password authentication collects only the user's email and a hashed password.
3. Cross-Extension Messaging
NeuroNotes can receive data from NeuroBrowse via cross-extension messaging when a user clicks "Save to NeuroNotes" within NeuroBrowse. This data stays entirely local on the device.
4. Permissions Used
NeuroNotes requests only the permissions necessary for its functionality:
- sidePanel: Display the sidebar interface
- storage: Save notes locally
- tabs: Authentication flow
- identity: Google sign-in
- alarms: Token refresh for authentication sessions
5. No Tracking or Remote Code
- No analytics, tracking, or telemetry data is collected by NeuroNotes
- No remote code is loaded or executed
6. Data Deletion
Deleting the extension permanently removes all locally stored data including notes, images, and voice recordings.