PRIVACY POLICY
Ideogram Automation Chrome Extension
Developed by Extino Ltd
Effective Date: March 1, 2026
Last Updated: March 1, 2026
------------------------------------------------------------------------
PLAIN-ENGLISH SUMMARY
Ideogram Automation is a Chrome extension that runs locally in your browser. We collect only what is necessary to operate the service — primarily your account credentials and subscription status. We do NOT sell your data, track your browsing activity, or store your image prompts or generated images on our servers. Your creative work stays yours.
------------------------------------------------------------------------
1. OVERVIEW AND SCOPE
This Privacy Policy describes how Extino Ltd ("Extino", "we", "us", or "our") collects, uses, stores, and protects information in connection with the Ideogram Automation Chrome extension (the "Extension") and any associated websites, services, or software (collectively, the "Service").
By installing or using the Extension, you agree to the practices described in this policy. If you do not agree, please uninstall the Extension and discontinue use of the Service.
This policy applies to all users of the Extension regardless of location, including users in the European Union (GDPR), the United Kingdom (UK GDPR), California (CCPA/CPRA), and other jurisdictions with applicable data protection laws.
------------------------------------------------------------------------
2. DATA CONTROLLER
The data controller responsible for your personal information under this policy is:
Extino Ltd
Developer of Ideogram Automation Chrome Extension
Privacy enquiries: privacy@extino.app
------------------------------------------------------------------------
3. DATA WE COLLECT
We collect two categories of data: data you provide directly, and data collected automatically during your use of the Service.
3.1 Data You Provide Directly
Email address
- Purpose: Account creation, authentication, and subscription management via the Extino platform
- Required: Yes
Password (hashed)
- Purpose: Secure account authentication. Passwords are never stored in plain text.
- Required: Yes
Payment information
- Purpose: Processed by our third-party payment provider. We do not store card numbers or banking details on our servers.
- Required: For paid plans only
Google Gemini API key
- Purpose: Stored locally in your browser only (Chrome storage). Used to authenticate AI prompt generation requests. Never transmitted to Extino servers.
- Required: Optional
3.2 Data Collected Automatically
Subscription status and plan type
- Purpose: To validate active access and enforce plan-level feature permissions
Extension version number
- Purpose: To deliver compatibility checks and support troubleshooting
Error and crash logs
- Purpose: Anonymized technical diagnostics to identify and fix bugs. Contains no personal data or prompt content.
Authentication session tokens
- Purpose: To maintain your logged-in session securely across browser tabs
3.3 Data We Do NOT Collect
We explicitly do not collect, store, or transmit the following:
- Your image prompts
- Generated image files
- Reference images you upload
- Browsing history or activity outside of Ideogram AI
- Ideogram AI account credentials
- CSV export files
- Any content generated through the Ideogram AI platform
All generation workflows — including prompt submission, image processing, and file downloads — occur entirely within your browser and on Ideogram AI's own servers. Extino's servers are not involved in the generation pipeline.
------------------------------------------------------------------------
4. HOW WE USE YOUR DATA
We use the data we collect solely to provide, maintain, and improve the Service. Specifically:
Purpose: Authenticate your account and validate subscription access
Legal Basis (GDPR): Performance of a contract
Purpose: Process subscription payments and manage billing
Legal Basis (GDPR): Performance of a contract
Purpose: Deliver extension updates and security patches
Legal Basis (GDPR): Legitimate interest
Purpose: Diagnose technical errors and improve service stability
Legal Basis (GDPR): Legitimate interest
Purpose: Send transactional emails (account confirmation, billing receipts, password reset)
Legal Basis (GDPR): Performance of a contract
Purpose: Respond to support requests and enquiries
Legal Basis (GDPR): Legitimate interest
Purpose: Comply with applicable legal obligations
Legal Basis (GDPR): Legal obligation
We do NOT use your data for advertising, profiling, or behavioral targeting — by Extino or any third party.
------------------------------------------------------------------------
5. THIRD-PARTY SERVICES
The Extension interacts with the following third-party services. Each operates under its own privacy policy and terms of service.
Ideogram AI
- Role: The target platform for image generation. All generation requests are submitted directly from your browser to Ideogram's servers.
- Data Shared: Your Ideogram AI session (managed by you). Extino does not intermediate this connection.
Google Gemini API
- Role: Optional AI prompt generation. Requests are made directly from your browser using your own API key.
- Data Shared: Your prompt keywords (sent from your browser, not via Extino servers). Governed by Google's Privacy Policy.
Payment Processor
- Role: Handles subscription billing securely.
- Data Shared: Your billing name, email, and payment method. Extino receives only transaction confirmation status.
Chrome Web Store (Google)
- Role: Extension distribution and installation.
- Data Shared: Extension installation and update events. Governed by Google's Privacy Policy.
IMPORTANT: When you use Ideogram AI through the Extension, your activity on that platform is subject to Ideogram AI's own Privacy Policy and Terms of Service. Please review those documents separately. Extino is not responsible for Ideogram's data practices.
------------------------------------------------------------------------
6. DATA STORAGE AND RETENTION
6.1 Local Browser Storage
The following data is stored locally on your device using Chrome's secure storage API and is never transmitted to Extino servers:
- Extension settings and preferences
- Google Gemini API key
- Prompt templates
- Work/rest schedule configuration
- Authentication session token
6.2 Server-Side Storage
The following data is stored on Extino's secured servers:
- Account email address
- Hashed password
- Subscription plan and status
- Billing records
- Anonymized error logs
6.3 Retention Periods
Active account data
- Retained for the duration of your active account
Account data after deletion
- Deleted within 30 days of account closure request
Billing and transaction records
- Retained for 7 years (required by financial regulations)
Anonymized error and diagnostic logs
- Retained for 90 days, then automatically purged
Support correspondence
- Retained for 2 years from last interaction
------------------------------------------------------------------------
7. DATA SHARING AND DISCLOSURE
We do not sell, rent, or trade your personal data to any third party, ever.
We may share limited data in the following circumstances only:
Service providers
Trusted vendors who assist in operating our infrastructure (payment processing, hosting, email delivery) under strict data processing agreements. These providers are prohibited from using your data for their own purposes.
Legal requirements
If required by applicable law, court order, or governmental authority, we may disclose information necessary to comply with the legal obligation. We will notify you of such requests where legally permitted to do so.
Business transfers
In the event of a merger, acquisition, or sale of substantially all of our assets, your data may be transferred to the acquiring entity. You will be notified of any such change and given the opportunity to delete your account before the transfer is complete.
Protection of rights
Where necessary to protect the rights, property, or safety of Extino Ltd, our users, or the public — for example, to prevent fraud or abuse of the Service.
------------------------------------------------------------------------
8. DATA SECURITY
We implement industry-standard security measures to protect your personal data from unauthorized access, alteration, disclosure, or destruction.
Our security practices include:
- HTTPS encryption for all data in transit
- bcrypt or equivalent hashing for all stored passwords
- Encrypted server storage
- Access controls limiting which Extino staff can access user data
- Regular security reviews and dependency audits for the Chrome extension codebase
- Compliance with Chrome Extension Manifest V3 security requirements
Note: No system is 100% secure. While we take every reasonable measure to protect your information, we cannot guarantee absolute security. If you become aware of any security vulnerability related to our Service, please contact us immediately at security@extino.app.
------------------------------------------------------------------------
9. YOUR PRIVACY RIGHTS
Depending on your location, you may have the following rights with respect to your personal data. To exercise any of these rights, contact us at privacy@extino.app. We will respond within 30 days.
Right to Access
Request a copy of the personal data we hold about you.
Right to Rectification
Request correction of inaccurate or incomplete personal data.
Right to Erasure
Request deletion of your personal data ("right to be forgotten").
Right to Data Portability
Receive your data in a structured, commonly used, machine-readable format.
Right to Object
Object to processing of your personal data based on legitimate interests.
Right to Restrict Processing
Request that we limit how we use your data while a dispute is resolved.
Right to Withdraw Consent
Where processing is based on your consent, withdraw that consent at any time without affecting the lawfulness of prior processing.
Right to Complain
Lodge a complaint with your local data protection supervisory authority.
California Residents (CCPA/CPRA)
You have the right to know what personal information we collect, the right to delete it, the right to opt out of its sale (we do not sell data), and the right to non-discrimination for exercising these rights.
------------------------------------------------------------------------
10. CHILDREN'S PRIVACY
The Service is not directed at, and is not intended for use by, individuals under the age of 16. We do not knowingly collect personal data from children under 16.
If you are a parent or guardian and believe your child has provided personal data to us without your consent, please contact us at privacy@extino.app and we will take immediate steps to delete that information.
------------------------------------------------------------------------
11. CHANGES TO THIS POLICY
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.
When we make material changes, we will notify you by updating the "Last Updated" date at the top of this page and, where appropriate, by sending a notification to the email address associated with your account or displaying a prominent notice within the Extension interface.
Your continued use of the Service after the effective date of any updated policy constitutes your acceptance of the changes. If you do not agree with the updated policy, please discontinue use of the Service and contact us to close your account.
------------------------------------------------------------------------
12. CONTACT US
If you have any questions, concerns, or requests regarding this Privacy Policy or how we handle your personal data, please reach out to us. We aim to respond to all privacy-related enquiries within 5 business days and to all data subject access requests within 30 days.
Extino Ltd
General enquiries: hello@extino.app
Privacy requests: privacy@extino.app
Security issues: security@extino.app
For formal data subject requests under GDPR or CCPA, please include "Data Subject Request" in your email subject line and specify the right you wish to exercise.
------------------------------------------------------------------------
© 2026 Extino Ltd. All rights reserved.
Ideogram Automation is developed and maintained by Extino Ltd.