Google API Limited Use
ScrollSentry uses current browser APIs and follows Chrome Web Store requirements. This policy explains how the extension handles information.
"The use of information received from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements."
Local extension settings and data are not used for advertising, data mining, profiling, or unauthorized transfers.
Data We Handle & Why
During submission to the Chrome Web Store Developer Dashboard, we declared processing of the following three data groups to ensure maximum compliance. Here is precisely how each group is handled:
Personally Identifiable Information
Collected only during optional subscription checkout through Stripe, our billing provider.
- Name & Billing Address
- Email (for entitlement lookup)
- Payment details (processed by Stripe)
User Activity & Stats
Feature counters generated while the extension is active. Stored locally and displayed only within the extension interface.
- Scroll depth counts & limits
- Daily site block counts
- Mindfulness bypass logs
- Extension active settings
Website Content & Rules
Your custom block rules and AI justifications used to verify access intents when websites are blocked.
- Domain blocks & bypass history
- Written justifications
- Custom focus site lists
Stripe processes all payment card data on its PCI-DSS compliant infrastructure. ScrollSentry does not store or receive your payment card details.
Data Isolation Framework
We apply Data Minimization. Information remains in your browser unless an external service is required for Stripe checkout, subscription verification, or an AI access request.
Detailed Disclosures & User Rights
- No Sale of Personal Data: We do not sell, rent, license, or exchange your personal information, activity, or website content with any third party. Your data cannot be sold to data brokers, ad platforms, or profiling networks.
- AI Browsing Validation: When you attempt to access a blocked site in "Hard Mode" using AI Browsing, your text justification is sent to our API worker on Cloudflare Workers and processed through Google Gemini APIs. The request is processed in memory, checked against your subscription token, and immediately discarded. It is not saved, retained, or used to train machine learning models.
- Local Encryption (PoP Keys): ScrollSentry generates a secure local P-256 ECC cryptographic key pair inside IndexedDB, so a username and password do not need to be transmitted. This key pair is used only to sign API requests that confirm an active subscription.
- Data Deletion Rights: You can completely erase your local data (block lists, scroll trackers, and settings) at any time by uninstalling the extension or clearing the extension's storage through Chrome Settings. To request removal of Stripe subscription customer profiles, please contact support.
- Human Review Limits: We do not inspect user activity or justifications. Humans will only review data if: (a) you explicitly request support, (b) it is required for network protection and debugging, or (c) we are legally obliged to comply with applicable laws.
Need help or want to delete your profile?
Our support team will respond directly within 48 business hours.