Last updated: 16 August 2026
Cerberus SSO is an enterprise browser extension developed and deployed by Cerberus for use on managed corporate computers. The extension works with the Cerberus desktop agent installed on the same computer to assist users with signing in to authorised enterprise applications.
Cerberus SSO is intended for managed enterprise environments and is not designed for personal or unmanaged devices.
When a user visits a sign-in page configured by an administrator, Cerberus SSO communicates with the locally installed Cerberus desktop agent. If the user is authorised to access the application and sign-in information is available, the agent provides the required information to the extension so that it can complete the sign-in form.
The extension does not independently collect, permanently store, or maintain a database of users' sign-in information.
The extension reads the address of the current web page to determine whether it corresponds to an enterprise application configured by an administrator.
Configured application addresses may be cached locally in browser session storage to support application matching without contacting the desktop agent on every page load.
When an administrator explicitly initiates application configuration or field capture, the extension may inspect the structure of the sign-in page.
This may include information such as:
Input field names
Input field types
Field identifiers
Other information required to identify fields for automatic form filling
The extension does not collect the values entered into those fields as part of the page-structure capture process.
Information handled by Cerberus SSO is used only to provide its enterprise sign-in and application-configuration functionality.
The extension uses:
Page addresses to identify configured applications.
Sign-in information provided by the local Cerberus desktop agent to complete authorized sign-in forms.
Sign-in page structure to allow administrators to configure application fields.
The extension does not use this information for advertising, profiling, behavioral tracking, or unrelated purposes.
Cerberus SSO is designed to communicate with the Cerberus desktop agent running locally on the same computer.
Sign-in information provided by the desktop agent is transferred between the local agent and the browser extension using Chrome's native messaging mechanism. The extension does not transmit sign-in information to Cerberus, Cerberus SSO's developer, or unrelated third-party services.
The extension does not send browsing information or page addresses to an external analytics or advertising service.
Configured application addresses may be stored temporarily in browser session storage and are cleared when the browsing session ends, subject to Chrome's handling of session storage.
Cerberus Admin Console administrators may configure enterprise applications and determine which users are authorized to use those applications.
The Cerberus system may maintain audit records associated with sign-in activity. The information contained in those records is determined by the Cerberus system and Cerberus's configuration and policies.
Audit records may include the application name, user or account identifier, date and time, and the outcome of a sign-in attempt. Sensitive sign-in information is not included in audit records.
Cerberus SSO requests the following browser permissions. Each permission is required for a specific function of the extension.
Allows the extension to communicate with the Cerberus desktop agent installed on the same computer.
Allows the extension to operate on enterprise application pages configured by an organization's administrator. These application addresses may be internal or organization-specific and therefore cannot be defined as a fixed list at the time the extension is published.
The extension uses the configured application profiles to determine which pages require its functionality.
Allows the extension to read the address of the current browser tab so that it can determine whether the page corresponds to a configured enterprise application.
Allows the extension to interact with a matched sign-in page and fill the fields required for the configured sign-in process.
Allows the extension to temporarily cache the list of configured application addresses during the browser session. This reduces unnecessary communication with the local Cerberus desktop agent.
Allows the extension to periodically refresh the locally cached list of configured application addresses.
Cerberus SSO does not sell or share information handled by the extension for advertising or other unrelated purposes.
The extension does not use third-party advertising, analytics, or tracking services.
Information handled by the broader Cerberus system may be subject to Cerberus's internal security, privacy, and access-control policies.
The browser extension does not permanently retain sign-in information.
Temporary browser session data, such as the cached list of configured application addresses, is retained only as required for the extension's functionality and is cleared when the browser session ends.
Retention of information managed by the Cerberus desktop agent, including stored sign-in information and audit records, is governed by Cerberus's applicable data-retention policies.
Cerberus SSO is intended for deployment on computers managed by an organization's own IT administrators. The extension may be installed, configured, or managed through enterprise policies.
Because Cerberus SSO is an enterprise-managed extension, some settings or installation controls may be managed by your organization's IT administrators and may not be available for individual modification.
We may update this Privacy Policy when the extension's functionality or applicable privacy requirements change.
Questions about this Privacy Policy, or requests regarding information
stored for your account, should be sent to amanmadrid61@gmail.com.