Privacy Policy

Last updated: May 25, 2026

1. Overview

Collecta ("we", "our", or "the Extension") is a browser extension that helps users sync and manage their bookmarks/favorites from multiple platforms (Bilibili, Douyin, Xiaohongshu, and X/Twitter) in one unified interface.

This Privacy Policy explains what data we collect, how we use it, and your rights regarding your data.

2. Data We Collect

2.1 Bookmark Data

When you connect a platform, we sync the following bookmark metadata:

  • Bookmark title
  • Content URL (link to original content)
  • Cover image URL
  • Author name
  • Content type (video, article, note)
  • Original bookmark date
  • Folder/collection name (if applicable)

2.2 Platform Connection Data

To authenticate with platforms, we temporarily read:

  • Session cookies (used only to verify login status and make API calls)
  • Platform user ID and username (to associate bookmarks with the correct account)

2.3 Account Data

When you create a Collecta account:

  • Email address (via GitHub or Apple OAuth)
  • Display name

3. Data We Do NOT Collect

  • We do NOT collect your browsing history
  • We do NOT collect passwords or full authentication tokens
  • We do NOT collect content you have not bookmarked/favorited
  • We do NOT collect personal messages or private communications
  • We do NOT track your activity across websites
  • We do NOT use your data for advertising purposes

4. How We Use Your Data

  • Display your synced bookmarks in the Collecta dashboard
  • Enable cross-platform search and filtering
  • Support tagging and organization features
  • Provide incremental sync (only new bookmarks)

We use your data solely to provide the core bookmark management functionality. We do not sell, rent, or share your data with any third party.

5. Data Storage & Security

  • Data is stored on Supabase (PostgreSQL) with row-level security
  • All data transmission uses HTTPS encryption
  • Each user can only access their own bookmarks (enforced at database level)
  • Session cookies are read in-memory and never persisted by the extension

6. Permissions Explained

PermissionWhy We Need It
cookiesRead platform login cookies to authenticate API requests for syncing bookmarks
alarmsSchedule automatic sync every 30 minutes
storageSave sync progress and user preferences locally
tabsCommunicate with content scripts for request signing

7. Your Rights

You have the right to:

  • Access - View all data we have stored about you
  • Delete - Request complete deletion of your account and all associated data
  • Disconnect - Remove any platform connection at any time
  • Export - Download your bookmark data in standard formats

To exercise any of these rights, please contact us at the email below.

8. Data Retention

Your bookmark data is retained as long as your account is active. When you delete your account, all associated data is permanently removed within 30 days. Disconnecting a platform immediately stops syncing and removes that platform's data.

9. Changes to This Policy

We may update this Privacy Policy from time to time. Significant changes will be communicated through the extension or via email. Continued use of the extension after changes constitutes acceptance of the updated policy.

10. Contact

If you have any questions about this Privacy Policy or your data, please contact us:

Email: privacy@collecta.app