PRIVACY POLICY — Safelist Link Opener


Last updated: 09/11/2026


Safelist Link Opener is a Chrome browser extension. This policy explains what data the extension handles and how.


1. What the extension collects


The extension reads the email address of the Google account you are signed into Chrome with. This is provided by Chrome itself via the chrome.identity API. No password, no profile data, no other information is collected.


The extension also stores, locally on your device only:

- Your current settings (selected mode, selected safelist, max links, toggle states).

- A cached copy of the access whitelist (a list of authorized email addresses).


2. How the email address is used


Your email address is used only to check whether you are authorized to use the extension. This check is done by comparing your email against a private access list that the developer maintains. If your email is on the list, the extension runs. If it isn't, the extension remains locked.


3. Where your data goes


Nowhere. The extension does not transmit your email address, your settings, the safelists you use, the credit links you open, or any other information to any third-party server, analytics service, or advertiser. The only outbound network request the extension ever makes is to download the access list (a plain list of authorized email addresses, hosted on Google Sheets) so it can verify your access.


4. What the extension does on the pages you visit


When you click Start, the extension reads the links on the currently active page so it can find credit links that match the safelist you selected. It does not record page content, does not modify pages other than opening tabs, and does not act on any page until you explicitly click Start.


5. Permissions


- "tabs": used to open and manage the background tabs that hold the credit links.

- "scripting": used to read the current page when you start a run, in order to find credit links.

- "storage": used to save your settings and cache the access list on your device.

- "identity" / "identity.email": used to read the email of the Google account signed into Chrome, for the access check.

- "alarms": used to periodically refresh the access list.

- "host permissions (<all_urls>)": needed because safelists can live on any domain. The extension does not act on any page unless you explicitly start a run.


6. Data retention


All data stored by the extension (settings, cached access list) lives only on your device. Uninstalling the extension removes it. The email addresses in the access whitelist are stored by the developer on a private Google Sheet for the purpose of granting and revoking access, and are not shared with anyone.


7. Children


The extension is not directed at children under 13 and does not knowingly collect information from them.


8. Changes to this policy


If this policy changes, the updated version will be published at the same URL.


9. Contact


For any questions, contact: vablaisluca@gmail.com