Privacy Policy – Foldmark
Foldmark is a Chrome extension for capturing highlighted text, organizing it into folders and workflow states, and exporting saved bookmarks. Foldmark is designed to be local-first: your bookmarks, notes, folders, and preferences stay on your device by default.
1. What Foldmark Stores Locally
Foldmark uses chrome.storage.local to store data needed for the extension to work, including:
- saved bookmarks and highlighted text
- bookmark titles, notes, workflow state, and folder assignments
- folders and folder preferences
- app settings and preferences
- optional AI configuration stored locally on-device
- a local anonymous analytics queue and analytics state
This local data is used to provide the extension’s features and is not uploaded by default.
2. What Foldmark Does Not Collect for Analytics
Foldmark does not send the following as part of analytics or product telemetry:
- your name, email address, or account identity
- passwords or authentication credentials
- payment or financial information
- raw highlighted text or bookmark body content
- full browsing history
- AI API keys
Foldmark only accesses the active page, the user’s selected text, and related page metadata needed for the save and capture features the user invokes.
3. Anonymous Analytics
Foldmark includes optional anonymous usage analytics to help improve the product.
Default behavior
- Remote analytics upload is disabled by default.
- You must explicitly opt in before analytics are uploaded.
- You can disable remote analytics upload at any time in Settings.
What analytics are used for
Anonymous analytics are used to improve capture reliability, search and organization features, and overall product usability and quality.
What analytics may include
- anonymous user ID
- session ID
- event timestamps
- event names such as bookmark creation, editing, searching, exporting, processing, and settings changes
- non-sensitive product metadata such as counts, flags, workflow view, folder IDs, and durations
If a source reference is included, it is limited to non-sensitive metadata such as a domain name where applicable.
What analytics do not include
- raw highlighted text
- bookmark content
- personal identity information
- API keys
Local analytics queue
Foldmark may store anonymous analytics events locally on your device even when remote upload is disabled. This local queue supports batching, retry behavior, and analytics status/debugging inside the extension. Local queueing does not itself send data to a server.
Remote analytics upload
If you enable analytics upload:
- events are sent over HTTPS
- uploads are batched
- the current backend endpoint is a Supabase Edge Function
- failed uploads are retried with exponential backoff
Analytics retention
- remote analytics events are retained in the backend for up to 90 days
- local analytics queue data remains on your device until uploaded or until extension storage is cleared
4. AI Features
Foldmark includes optional AI-assisted features such as title/category suggestions and AI summaries.
When AI sends data off-device
If you trigger an AI feature and AI is configured on your device, Foldmark may send limited bookmark-related data to the configured AI provider. Depending on the feature, that data may include:
- selected or saved bookmark text
- bookmark title
- source URL
- available folder names or folder IDs used to suggest organization
Important AI rules
- AI use is optional
- AI requests are user-triggered
- AI data is sent only when you use an AI action
- AI API keys are stored locally on your device
- AI requests are sent directly from the extension to the configured provider
AI transfer and analytics upload are separate behaviors. Bookmark content is never included in Foldmark analytics.
You should review the privacy policy of any AI provider you choose to use.
5. Third-Party Services
Foldmark may optionally communicate with third-party services only for the following product features:
- OpenAI API for user-triggered AI features
- Supabase-hosted analytics ingest for user-enabled anonymous analytics upload
These services are not used for advertising or data brokerage.
6. Data Ownership and User Control
You retain control of your data.
- bookmarks and notes are stored locally by default
- you can export your library
- you can delete bookmarks, notes, and folders
- you can clear extension storage to remove local data
- you can disable analytics upload at any time
7. Security
Foldmark uses the following privacy and security practices:
- local-first data storage
- minimal data collection
- no remote code loading by design
- HTTPS for network communication when optional network features are used
- user-triggered AI transfer only
- opt-in remote analytics upload only
8. Changes to This Policy
This policy may change as Foldmark evolves. Material changes will be reflected by updating the date at the top of this document.
9. Contact
For privacy questions or requests:
Product: Foldmark
Email: contact@foldmark.app
10. Compliance Statement
Foldmark is intended to align with:
- Chrome Web Store Developer Program Policies
- Chrome Web Store disclosure and limited-use requirements
- privacy-by-design and data minimization principles