Privacy Policy

Spendrift Privacy Policy.

Effective Date: August 10, 2026. Spendrift is a Chrome extension and alpha website that helps users understand opportunity cost while shopping online.

Version 1.2.0: Local Controls and Dashboard Connection

Prepared September 2, 2026 for the next release. Alternative sets, categories, preferred-goal rules, reflection style, and up to 500 recent saving/Undo receipts are stored locally. Receipts contain an opaque action ID, goal reference, amount, currency and local date; they contain no shopping URL or product name and are not uploaded. Resetting decision stats clears these receipts.

The alarms permission schedules a sync retry about every five minutes while Chrome runs. In Offline mode, background sync exits before contacting the account service. Requests already sent when the mode changes may finish.

Only the official Spendrift dashboard at https://spendrift-eight.vercel.app/dashboard (or /dashboard.html) can request a connection check, a sync for the same signed-in account, or opening extension settings. The dashboard supplies its signed-in account ID for comparison; the extension returns only connection state, version, and last-sync time, not tokens, passwords, email addresses, local goals, or shopping details. This does not share login sessions or let a website change settings.

The dashboard reads the latest aggregate snapshot while visible. It does not merge multiple devices. An optional CSV download is created in the browser and contains only daily aggregate dates, USD amounts and counts, not account identifiers. To delete cloud totals without re-upload, switch the extension to Offline first. Public community figures are manually maintained; the website does not automatically combine private dashboard snapshots into public totals.

Overview

When users view or hover over a price, Spendrift can show alternative uses for that money, compare the amount with user-created saving goals, and provide short reflection prompts before purchase. This Privacy Policy explains what information Spendrift handles, how that information is used, and what choices users have.

Information Stored Locally

Spendrift stores certain information locally in the user's Chrome browser using Chrome storage. This information is used only to make the extension work and remember the user's preferences.

  • Extension on/off setting
  • Activation mode, such as hover mode or automatic mode
  • Selected language, theme, region, display currency, and privacy mode
  • Custom opportunity-cost alternatives
  • Saving goals and goal progress
  • Optional hourly wage, future-value estimate settings, and display preferences
  • Local stats, including cards shown or closed, goal comparisons, reviewed amounts, skipped purchases, and amounts moved toward goals
  • Failed feedback submissions as a local backup if feedback cannot be sent

These settings and local records use chrome.storage.local. In Offline mode, they are not automatically sent to Spendrift, the developer, DecisionOS, Supabase, or the dashboard. Optional feedback can still be sent only when the user presses the feedback submission button.

Optional Account And Online Sync

Accounts are optional. Spendrift uses the same Supabase Auth project as DecisionOS, so an existing DecisionOS email and password can be used with Spendrift. Browser sessions remain separate between the two websites. Supabase processes authentication; Spendrift does not store account passwords.

When a user deliberately selects Online mode and signs in, Spendrift automatically updates one private aggregate snapshot for that account. The snapshot can include:

  • Extension and snapshot schema versions and the latest sync time
  • Activation mode, theme, language, region, and display currency
  • Total cards shown and closed and total saving-goal comparisons
  • Total prices reviewed, purchases intentionally skipped, and amounts intentionally moved toward goals
  • Up to 90 days of daily aggregate versions of those same totals

Aggregate amounts are normalized approximately to U.S. dollars for consistent display and are not bank transactions or verified savings. Online snapshots do not contain URLs, page titles, product names, individual purchase records, custom alternative details, saving-goal names or targets, hourly wage, future-value settings, feedback messages, or payment information.

Switching back to Offline mode stops automatic dashboard sync. A local authentication session may remain on the device so the user can reconnect later without creating a new account. Users can sign out or delete their synced Spendrift snapshot from the dashboard. Row Level Security is used so signed-in users can access only their own rows.

Information Spendrift Does Not Collect

Spendrift does not collect:

  • Browsing history
  • Product names
  • Exact page URLs
  • Personal shopping history
  • Payment information, credit card information, or bank account information
  • Stored or readable account passwords; credentials are processed by Supabase Auth
  • Search history
  • Personal financial account data

Spendrift reads visible page content only as needed to detect price text and show opportunity-cost comparisons. This processing happens in the user's browser.

Optional Feedback

Spendrift includes an optional feedback form in the extension. If a user chooses to submit feedback, the feedback message, optional email address, extension version, selected settings, and basic non-sensitive context are sent through Formspree so the developer can review testing feedback and improve the extension.

Feedback is only sent when the user intentionally submits the feedback form. Spendrift does not require users to provide an email address to use the extension. If a user includes an email address, it may be used only to understand or respond to that feedback.

Alpha Applications

The Spendrift website includes an optional testing volunteer form. If a person applies for the alpha, the information they enter into that form is sent through Formspree for review.

Alpha application submissions may include:

  • Name
  • Email address
  • Country or region
  • Main currency
  • Shopping sites the applicant is willing to test on
  • Purchase goals or reasons for testing Spendrift
  • Shopping frequency
  • Testing focus selections and optional notes

Alpha application information is used to review tester requests, communicate about testing participation, and improve the public testing process.

Diagnostic Information

Spendrift may include a "Copy diagnostic info" feature. This feature copies basic non-sensitive extension information to the user's clipboard only when the user clicks the button.

Diagnostic information may include:

  • Extension version
  • Activation mode
  • Theme, language, region, and currency settings
  • Whether the extension is enabled
  • Selected Offline or Online privacy mode
  • Local alpha testing stats

Diagnostic information does not include browsing history, product names, exact page URLs, user email addresses, payment information, or personal shopping history.

How Information Is Used

Spendrift uses locally stored extension information to:

  • Remember user settings
  • Show personalized opportunity-cost comparisons
  • Display saving goal comparisons
  • Save custom alternatives
  • Track local alpha testing stats
  • Show a private aggregate dashboard when the user enables Online mode
  • Improve the user experience during testing

Optional feedback and alpha applications are used to:

  • Understand bugs
  • Improve price detection and usability
  • Review private testing participation requests
  • Improve Spendrift before wider release

Third-Party Services

Spendrift uses Supabase for optional account authentication, profile records, and private aggregate dashboard snapshots. Spendrift uses Formspree for optional feedback and alpha application submissions. Each service processes only the information needed for the action the user chooses.

Spendrift does not use third-party advertising services, data brokers, or tracking services.

Spendrift does not use advertising networks, data brokers, behavioral analytics, payments, bank connections, or financial-account integrations. The optional account and dashboard do not turn Spendrift into a purchase-history or financial-tracking service.

Data Sharing

Spendrift does not sell user data, share user data with advertisers, use user data for targeted advertising, or transfer user data to data brokers or information resellers.

Supabase receives optional account information and aggregate sync data when Online mode is enabled. Formspree receives form information only when a user submits feedback or an alpha application. Spendrift does not share that information for advertising, profiling, or sale.

Chrome Permissions

Storage permission: Spendrift uses Chrome storage to save user settings, privacy mode, custom alternatives, saving goals, decision preferences, local stats, and the optional Supabase session.

clipboardWrite permission: Spendrift uses clipboardWrite only when the user clicks the "Copy diagnostic info" button. Spendrift does not read from the clipboard.

Host permissions: Spendrift needs access to webpages so it can detect visible price text on shopping pages and show the opportunity-cost card near the selected price. Spendrift does not use this access to collect browsing history, product names, exact URLs, or personal shopping history.

Remote Code

Spendrift does not execute remotely hosted code. The extension's code is included in the extension package submitted to the Chrome Web Store or distributed for private alpha testing.

User Control

Users can control their information by:

  • Changing settings in the Spendrift popup
  • Editing or deleting custom alternatives
  • Editing saving goals and saving progress
  • Resetting local alpha testing stats
  • Switching to Offline mode to stop automatic dashboard sync
  • Signing out of the optional account
  • Deleting the synced Spendrift snapshot from the dashboard
  • Removing the extension from Chrome
  • Clearing Chrome extension storage

Uninstalling Spendrift removes the extension from the browser. Users may also clear locally stored browser data through Chrome settings.

Data Retention

Local settings and stats remain on the device until the user resets them, clears extension storage, or uninstalls Spendrift. Online mode keeps one latest Spendrift snapshot in the shared account database and updates that snapshot over time. The user can delete it from the dashboard; future Online-mode activity can create a new snapshot. Feedback and alpha applications are retained according to the Formspree account settings used to receive those submissions.

Children's Privacy

Spendrift is not designed to collect personal information from children and does not knowingly collect personal information from children.

Changes To This Policy

This Privacy Policy may be updated as Spendrift changes. If the extension or website begins collecting or using data differently, this policy will be updated to explain those changes.

Chrome Web Store Limited Use Disclosure

Spendrift's use of information received from Chrome APIs follows the Chrome Web Store User Data Policy, including the Limited Use requirements. Spendrift uses Chrome API data only to provide and improve its user-facing opportunity-cost comparison features and the optional aggregate dashboard selected by the user. Spendrift does not sell user data, use user data for advertising, or transfer user data to third parties except as described in this Privacy Policy.

Contact

For questions about this Privacy Policy or Spendrift, contact: Spendriftextension@gmail.com

1.2.0:本地控件与仪表板连接

本说明于 2026 年 9 月 2 日为下一版本准备。替代选项组合、分类、优先目标规则、思考提示风格,以及最多 500 条近期储蓄与撤销记录保存在本地。记录包含随机操作编号、目标引用、金额、货币和本地日期,不包含购物网址或商品名称,也不会上传。重置决策统计会清除这些记录。

alarms 权限用于在 Chrome 运行时大约每五分钟安排一次同步重试。离线模式下,后台同步会在联系账号服务前退出。切换模式前已经发送的请求可能仍会完成。

只有 https://spendrift-eight.vercel.app/dashboard(或 /dashboard.html)的官方仪表板能够请求连接检查、同账号同步或打开扩展设置。仪表板提供已登录账号编号用于比对;扩展只返回连接状态、版本和上次同步时间,不返回令牌、密码、邮箱、本地目标或购物详情。这不会共享登录状态,也不允许网站修改设置。

仪表板可见时读取最新汇总快照,不合并多个设备。可选 CSV 下载在浏览器内生成,只包含每日日期、美元汇总金额和次数,不含账号标识。删除云端数据前请先将扩展切换为离线,避免重新上传。首页社区数据由人工维护;网站不会自动将私人仪表板快照合并为公开总数。

概览

当用户查看或悬停在价格上时,Spendrift 可以显示这笔钱的其他用途、与用户创建的储蓄目标进行比较,并在购买前提供简短的思考提示。本隐私政策说明 Spendrift 会处理哪些信息、如何使用这些信息,以及用户有哪些选择。

本地存储的信息

Spendrift 会使用 Chrome storage 将部分信息保存在用户自己的 Chrome 浏览器中。这些信息只用于让扩展正常工作,并记住用户的偏好设置。

  • 扩展的开启或关闭状态
  • 激活模式,例如悬停模式或自动模式
  • 选择的语言、主题、地区、显示货币和隐私模式
  • 用户自定义的机会成本替代选项
  • 储蓄目标和目标进度
  • 可选时薪、未来价值估算设置和显示偏好
  • 本地统计,包括卡片显示或关闭次数、目标比较、已对比金额、放弃购买次数和转入目标的金额
  • 如果反馈提交失败,可能会在本地保留失败反馈作为备份

这些设置和本地记录使用 chrome.storage.local。在离线模式下,它们不会自动发送给 Spendrift、开发者、DecisionOS、Supabase 或网站仪表板。只有用户主动按下反馈提交按钮时,可选反馈才会发送。

可选账号与在线同步

账号完全可选。Spendrift 与 DecisionOS 使用同一个 Supabase Auth 项目,因此现有 DecisionOS 邮箱和密码也可以用于 Spendrift。出于安全考虑,两个网站各自保存独立的浏览器登录状态。身份验证由 Supabase 处理,Spendrift 不保存账号密码。

只有当用户主动选择在线模式并登录后,Spendrift 才会自动更新该账号的一份私人汇总快照。快照可能包括:

  • 扩展版本、快照结构版本和最近同步时间
  • 激活模式、主题、语言、地区和显示货币
  • 卡片显示与关闭总次数,以及储蓄目标比较总次数
  • 已对比金额、主动放弃购买次数和主动转入目标的金额总计
  • 最近最多 90 天的同类每日汇总数据

为了保持统一显示,汇总金额会使用近似汇率换算为美元基准;这些数字不是银行交易,也不是经过验证的实际储蓄。在线快照不包含网址、页面标题、商品名称、单笔购买记录、自定义替代选项详情、储蓄目标名称或金额、时薪、未来价值设置、反馈内容或支付信息。

切换回离线模式会停止自动同步。为了方便以后重新连接,设备上可能仍会保留本地登录会话。用户可以退出账号,也可以在仪表板中删除已同步的 Spendrift 快照。系统使用 Row Level Security,确保登录用户只能访问自己的数据行。

Spendrift 不收集的信息

Spendrift 不收集:

  • 浏览历史
  • 商品名称
  • 精确页面 URL
  • 个人购物历史
  • 支付信息、信用卡信息或银行账户信息
  • 可被 Spendrift 保存或读取的账号密码;登录凭据由 Supabase Auth 处理
  • 搜索历史
  • 个人金融账户数据

Spendrift 只会在需要识别可见价格文字并显示机会成本比较时读取页面上可见的内容。这些处理发生在用户自己的浏览器中。

可选反馈

Spendrift 扩展中包含一个可选反馈表单。如果用户选择提交反馈,反馈内容、可选邮箱、扩展版本、所选设置和基础的非敏感上下文会通过 Formspree 发送,方便开发者查看测试反馈并改进扩展。

只有在用户主动提交反馈表单时,反馈才会发送。使用 Spendrift 不需要提供邮箱。如果用户填写邮箱,该邮箱只会用于理解或回复相关反馈。

Alpha 测试申请

Spendrift 网站包含一个可选的自愿测试 申请表。如果有人申请 Alpha 测试,他们在表单中填写的信息会通过 Formspree 发送并用于审核。

Alpha 申请可能包含:

  • 姓名
  • 邮箱地址
  • 国家或地区
  • 主要货币
  • 申请者愿意测试的购物网站
  • 购买目标或测试 Spendrift 的原因
  • 网上购物频率
  • 测试重点选择和可选备注

Alpha 申请信息用于审核测试资格、沟通测试访问权限,并改进公开测试流程。

诊断信息

Spendrift 可能包含“复制诊断信息”功能。只有在用户点击按钮时,这个功能才会把基础的非敏感扩展信息复制到用户剪贴板。

诊断信息可能包含:

  • 扩展版本
  • 激活模式
  • 主题、语言、地区和货币设置
  • 扩展是否启用
  • 当前选择的离线或在线隐私模式
  • 本地 Alpha 测试统计

诊断信息不包含浏览历史、商品名称、精确页面 URL、用户邮箱、支付信息或个人购物历史。

信息如何被使用

Spendrift 使用本地存储的扩展信息来:

  • 记住用户设置
  • 显示个性化的机会成本比较
  • 显示储蓄目标比较
  • 保存自定义替代选项
  • 记录本地 Alpha 测试统计
  • 在用户启用在线模式后显示私人汇总仪表板
  • 改进测试期间的用户体验

可选反馈和 Alpha 申请用于:

  • 理解问题和错误
  • 改进价格识别和可用性
  • 审核私人 Alpha 访问请求
  • 在更大范围发布前改进 Spendrift

第三方服务

Spendrift 使用 Supabase 处理可选账号验证、用户资料记录和私人汇总仪表板快照;使用 Formspree 处理可选反馈和 Alpha 申请。每项服务只处理用户所选择操作需要的信息。

Spendrift 不使用第三方广告服务、数据经纪商或追踪服务。

Spendrift 不使用广告网络、数据经纪商、行为分析、付款系统、银行连接或金融账户集成。可选账号和仪表板不会把 Spendrift 变成购物历史或财务追踪服务。

数据共享

Spendrift 不出售用户数据,不与广告商共享用户数据,不把用户数据用于定向广告,也不会将用户数据转移给数据经纪商或信息转售方。

用户启用在线模式后,Supabase 会接收可选账号信息和汇总同步数据。只有用户提交反馈或 Alpha 申请时,Formspree 才会收到相应表单信息。Spendrift 不会将这些信息用于广告、画像或出售。

Chrome 权限

storage 权限:Spendrift 使用 Chrome storage 保存用户设置、隐私模式、自定义替代选项、储蓄目标、决策偏好、本地统计和可选 Supabase 登录会话。

clipboardWrite 权限:Spendrift 只在用户点击“复制诊断信息”按钮时使用 clipboardWrite。Spendrift 不读取剪贴板内容。

host permissions:Spendrift 需要访问网页,才能识别购物页面上可见的价格文字,并在选中的价格附近显示机会成本卡片。Spendrift 不会利用这个权限收集浏览历史、商品名称、精确 URL 或个人购物历史。

远程代码

Spendrift 不执行远程托管代码。扩展代码包含在提交到 Chrome 网上应用店或用于私人 Alpha 测试分发的扩展包中。

用户控制

用户可以通过以下方式控制自己的信息:

  • 在 Spendrift 弹窗中更改设置
  • 编辑或删除自定义替代选项
  • 编辑储蓄目标和储蓄进度
  • 重置本地 Alpha 测试统计
  • 切换到离线模式,停止自动同步仪表板
  • 退出可选账号
  • 从仪表板删除已同步的 Spendrift 快照
  • 从 Chrome 中移除扩展
  • 清除 Chrome 扩展存储

卸载 Spendrift 会从浏览器中移除扩展。用户也可以通过 Chrome 设置清除本地存储的浏览器数据。

数据保留

本地设置和统计会保留在设备上,直到用户重置数据、清除扩展存储或卸载 Spendrift。在线模式会在共享账号数据库中保留一份最新 Spendrift 快照,并随使用持续更新。用户可以在仪表板中删除它;如果之后继续使用在线模式,系统可能会建立新的快照。反馈和 Alpha 申请的保留时间取决于用于接收这些提交的 Formspree 账号设置。

儿童隐私

Spendrift 不是为收集儿童个人信息而设计的,也不会故意收集儿童个人信息。

政策变更

随着 Spendrift 的变化,本隐私政策可能会更新。如果扩展或网站开始以不同方式收集或使用数据,本政策会更新并解释这些变化。

Chrome 网上应用店 Limited Use 披露

Spendrift 对来自 Chrome API 的信息使用遵守 Chrome 网上应用店用户数据政策,包括 Limited Use 要求。Spendrift 只使用 Chrome API 数据来提供和改进面向用户的机会成本比较功能,以及用户主动选择的可选汇总仪表板。Spendrift 不出售用户数据,不将用户数据用于广告,也不会把用户数据转移给第三方,除非本隐私政策中已有说明。

联系方式

如果你对本隐私政策或 Spendrift 有任何问题,请联系: Spendriftextension@gmail.com