# ShopAudit Privacy Policy
*Last updated: 16/08/26*
ShopAudit ("the extension") is built to run entirely inside your own browser. This policy explains exactly what data it touches and where it goes.
## What ShopAudit scans
When you click "Scan This Page," ShopAudit reads the visible content and HTML structure of the current browser tab — the same information any browser extension with page-scanning functionality needs to check for accessibility issues (missing alt text, color contrast, form labels, and similar). This scan runs using the open-source axe-core engine, entirely inside your browser.
**This page content is never uploaded, transmitted, or sent to any server.** Scan results are written only to your browser's local extension storage (`chrome.storage.local`), which stays on your device and is not accessible to ShopAudit's developer, to other extensions, or to any third party.
## What does leave your browser
The only network request ShopAudit ever makes is a license verification check to Gumroad's public license API (`api.gumroad.com`), and only when you enter a Pro license key or when the extension periodically re-checks an already-activated license (about once every 3 days). That request sends only your license key — never any page content, browsing history, or personal data — and Gumroad's response is limited to whether that license is valid.
If you never enter a Pro license key, ShopAudit makes no network requests at all.
## What ShopAudit stores locally
- Your most recent scan result(s), so you can view them again without rescanning.
- (Pro only) A history of pages you've scanned and their scores, so you can track progress over time.
- Your Pro license status, if activated.
All of this lives in your browser's local storage and is deleted if you uninstall the extension. Nothing is synced to any ShopAudit-operated server, because ShopAudit does not operate a server — there is no backend collecting this information.
## Third-party services
- **Gumroad** processes license verification and, separately, payment if you purchase ShopAudit Pro. Gumroad's own privacy policy governs that data: https://gumroad.com/privacy
## Permissions this extension requests, and why
- **activeTab / scripting** — required to run the accessibility scan on the page you're currently viewing, only when you click "Scan This Page." ShopAudit never scans pages in the background or without your action.
- **storage** — required to save your scan results and license status locally on your device.
- **host permission for api.gumroad.com** — required to verify a Pro license key.
## Changes to this policy
If this policy changes, the "Last updated" date above will change accordingly. Material changes will be reflected in the extension's Chrome Web Store listing.
## Contact
Questions about this policy: harshitkumar10024@gmail.com