Privacy Policy
NestarioTabs is a browser extension that saves and restores your tab sessions. It is local-first: your tabs are stored on your own device, and they only leave it when you deliberately create a share link or use a team workspace. This policy explains exactly what we collect, why, and your choices.
1. Who we are
NestarioTabs ("we", "us", "the extension") is the data controller for the limited information described below. You can reach us any time at nestariotabs@gmail.com.
2. What the extension does with your tabs
When you save a session, NestarioTabs captures the URLs, titles, and favicons of the tabs and tab groups in your browser window, plus the names and colors of those groups. This data is stored using Chrome's own storage on your device:
- Local storage (
chrome.storage.local) — your sessions, snapshots, trash, folders, and settings stay on your device. - Chrome Sync (
chrome.storage.sync, optional) — if you turn on syncing, your sessions are synced through your own Google/Chrome account so they follow you between your devices. This data is handled by Google as part of Chrome Sync; we never receive it.
3. When your data leaves your device
Your tab data is only transmitted to our servers when you choose one of these features:
a) Share links
When you create a share link, the selected session (tab URLs, titles, and group names) is sent to and stored on our server so the link can display it. You may set an expiry date or a maximum number of views, and you can revoke a link at any time. Expired and revoked shares are deleted from our server. Anyone with the link can view the shared session until it expires or is revoked, so only share links with people you trust.
b) Team workspaces (Sign in with Google)
If you create or join a team, you sign in with Google and your team's shared workspaces (tab URLs, titles, and group names) are stored on our server so team members can access and edit them in real time. Team data is visible to members of that team and to the team owner.
c) Cloud backup & sync (paid plans)
On a paid plan your saved sessions (tab URLs, titles, group names, and any tags you added) are copied to our servers so they can be restored on your other browsers and devices. Deleting a session in the extension deletes it from our servers too.
d) AI features (paid plans)
The AI features name sessions for you, group loose tabs, and let you search your saved sessions by meaning rather than exact wording. They are powered by a third-party API: the titles and web addresses of your saved tabs are sent to it and a result comes back. Some API providers are located outside the European Economic Area.
We also create and keep a mathematical representation of that same text, so that searching by meaning does not require sending your library to a provider every time you search.
We never send page contents, cookies, form data, passwords, or anything from tabs you have not saved.
These features run only on a paid plan, and only over sessions you have saved. On the free plan nothing is sent.
4. Account data we collect
Team features require signing in with Google. We use Google's OAuth with only these basic, non-sensitive scopes: openid, email, and profile. From this we store:
| Data | Why |
|---|---|
| Email address | To identify your account, link you to your teams, and show team members who you are. |
| Google account ID | To securely associate your sign-in with your account. |
| Session token | Stored on your device to keep you signed in. |
We do not access your Gmail, Google Drive, contacts, or any other Google data. If you never use team features, we collect none of this.
Billing information (paid plans)
If you subscribe to a paid plan (Pro or Team), payments are processed by Dodo Payments, our payment provider. Your card number is entered on Dodo's secure checkout and never touches our servers — we cannot see or store it. To manage your subscription we store:
| Data | Why |
|---|---|
| Plan, billing cycle & seat count | To know which features to unlock and how many team members your subscription covers. |
| Subscription & customer IDs (from Dodo) | To link your account to your subscription for renewals, plan changes, and the billing portal. |
| Subscription status & period dates | To apply grace periods on failed payments and end access when a plan expires. |
Dodo Payments processes your payment details, billing address, and transaction history under its own privacy policy. Invoices and receipts are issued through Dodo.
5. What we do NOT do
- We do not track your general browsing. We do not record which pages you visit, how long you spend on them, or what you do there. The only web addresses that ever reach us are the ones inside sessions you chose to save, share, sync, or use an AI feature on, as described in section 3.
- We do not sell, rent, or trade your personal information.
- We do not use your data for advertising.
- We do not run third-party analytics or trackers on your tab data.
Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
6. How the data is stored and protected
Data we store on our servers — shares, cloud-backed sessions, and team workspaces — is held in a database reachable only by our own backend, never directly from the extension or the open internet. Everything travels over an encrypted connection (HTTPS), and your saved sessions and share payloads are encrypted before they are written to storage, so a copy of the database on its own does not reveal them.
Access is checked on every request: a session can only be read by the account that saved it, and a team workspace only by members of that team. Uploads are size-capped and rate-limited to discourage abuse. No security measure is perfect, but we work to protect your data with reasonable safeguards.
7. Data retention
- Local sessions & snapshots: kept on your device until you delete them. Deleted sessions go to Trash until you empty it.
- Share links: deleted when they expire, reach their view limit, or you revoke them.
- Team workspaces: kept until a team member or owner deletes the workspace or the team.
- Cloud-backed sessions: kept while your account exists, and deleted from our servers when you delete the session.
- AI data: the representation used for meaning-based search is kept while the session it came from exists, and goes when you delete that session or your account. A short-lived cache of AI answers is kept for up to 7 days. A usage record — which feature ran, when, and what it cost in credits — is kept for billing and abuse prevention.
- Account data: kept while your account exists. Email us to delete your account and associated team data.
- Billing records: subscription state is kept while your subscription exists; transaction records are retained by Dodo Payments as required for accounting and tax law.
8. Your choices and rights
- Use it without an account — saving and restoring need no sign-in.
- Delete anytime — remove sessions, empty Trash, revoke shares, leave or delete teams from within the extension.
- Sign out — disconnects your Google session and clears the local token.
- Access or deletion requests — email nestariotabs@gmail.com and we'll help. Depending on where you live, you may have rights under the GDPR or CCPA to access, correct, or delete your data.
- Uninstalling the extension removes its local data from your device.
9. Third-party services
- Google — for Sign in with Google (OAuth) and optional Chrome Sync.
- Cloud infrastructure providers — hosting for our servers and database.
- Third-party API — powers the AI features on paid plans (see section 3d). Some providers are located outside the European Economic Area.
- Dodo Payments — payment processing, subscription billing, invoices, and the customer billing portal for paid plans. We never receive your card details.
- Favicon images — favicons shown on share pages may be fetched from public favicon services to display site icons.
9b. At a glance
| What | Where it lives | Who else sees it |
|---|---|---|
| Saved sessions, free plan | Your device only | No one |
| Saved sessions, paid plan | Your device + our servers | Our cloud infrastructure providers |
| Shared links | Our servers, until they expire | Anyone holding the link |
| Team workspaces | Our servers | Members of that team |
| Tab titles & addresses, AI features | Sent to a third-party API, result returned | That API provider |
| Page contents, cookies, form data | Never collected | No one |
| Payment card details | Never reach us | Our payment processor |
10. Children
NestarioTabs is not directed to children under 13 (or the minimum age in your jurisdiction), and we do not knowingly collect their personal data.
11. Changes to this policy
We may update this policy as the product evolves. We'll revise the "Last updated" date above and, for significant changes, provide a more prominent notice.
12. Contact
Questions or requests? Email us at nestariotabs@gmail.com.