Privacy Policy
How FolderFetch handles account data, local collections, optional AI requests, and service providers.
Last updated: 2026-09-15
Overview
FolderFetch is designed around a local-first browser extension. This policy explains what stays on your device, what our website needs to operate an account and paid entitlement, and what may be processed when you deliberately use an online feature.
The product is currently in pre-launch development. Provider names and public operator contact details will be finalized before commercial launch, and this policy will be updated if the implementation changes.
Data that stays on your device
FolderFetch does not send the following data to our servers as part of ordinary scanning, review, download, history, or local-library use:
- Website URLs you scan and the pages discovered during a scan.
- Page content, cookies, form values, or authenticated browsing data.
- Downloaded files, local file paths, and download-folder contents.
- Saved-source snapshots, scan history, and local library files.
- Your manually adjusted local organization.
Removing the extension or clearing browser storage may remove locally stored FolderFetch data. Account sign-in does not currently back up or restore these local collections.
Account and entitlement data
When account features are available, we may process:
- Email address, display name, email-verification state, and authentication records.
- Session records and security information needed to protect the account.
- A privacy-preserving device identifier, browser type, activation status, and recent verification time.
- Current plan, entitlement source, start and expiry times, orders, subscription status, refunds, and payment-event status.
- Hosted AI allowance periods, successful usage counts, and idempotency identifiers.
- Support tickets and the information you choose to include.
- Marketing consent status, source, policy version, and withdrawal time.
We do not use a checkout return URL, a front-end setting, or a local-storage value as proof of payment. Paid access is granted only after server-side confirmation.
Optional hosted AI
Hosted AI organization is optional. Before a request, FolderFetch will show the category of information to be sent. The service may process selected document metadata, visible structural context needed for organization, your organization instructions, and the generated result.
We do not intentionally send downloaded file bodies, browser cookies, passwords, or full browsing history. Operational records may include account ID, usage count, token totals, timing, and result status, but production logs should not contain page bodies or complete AI request payloads.
Payments, email, and external providers
We plan to use Creem for checkout, subscription management, tax handling, receipts, and refunds; Resend for transactional email; Google for optional sign-in; and a managed PostgreSQL provider for production account records. These providers process data under their own terms and privacy policies.
We do not store complete payment-card numbers. The payment provider may supply transaction identifiers, product information, amount, currency, tax status, and subscription state needed to maintain your entitlement.
Cookies and local storage
The website uses essential cookies or equivalent storage for sign-in, session security, language, and theme preferences. Non-essential analytics or marketing cookies will not be enabled without any consent required by applicable law.
The extension uses browser storage for local task recovery, preferences, source records, history, library state, and a short-lived account entitlement token when you connect an account.
Anonymous product metrics are off by default in the extension. If you enable them, FolderFetch may record a small allowlisted set of funnel events, such as first scan completed, first download completed, registration prompt clicked, and extension connection completed. These events do not include scan URLs, page titles, file names, search queries, document contents, or local paths. You can turn this setting off again at any time.
Email choices
Account verification, password reset, security, payment, refund, cancellation, and support-response messages are transactional. Product news, promotions, and re-engagement messages require separate, optional marketing consent and include an unsubscribe method.
Retention and deletion
We keep account and security data only as long as needed to provide the service, prevent abuse, resolve disputes, and meet legal obligations. Order, tax, fraud-prevention, and refund records may be retained where required by law or the payment provider.
Account controls will allow you to request access, export, correction, or deletion. Deleting an account does not remove files already downloaded to your device, and it cannot automatically erase local extension data on browsers that are no longer connected.
Security
We use HTTPS, access controls, secret management, restricted logs, database backups, and provider-signature verification appropriate to the service stage. No internet service can promise absolute security.
Your choices and rights
Depending on where you live, you may have rights to access, correct, delete, restrict, object to, or export personal data, and to withdraw consent. Mandatory local rights are not limited by this policy.
Children
FolderFetch is not directed to children under the minimum age required to consent to online services in their jurisdiction.
Changes to this policy
We may update this policy as FolderFetch develops. Material changes will be highlighted on the website or communicated through an appropriate account notice.
Contact
Use the Support page for privacy questions. A public support email and operator details will be added before commercial launch.