Browser Extensions

Browser Extension Privacy Policy

Last updated: July 23, 2026

Introduction

This Privacy Policy explains how BucketMate ("we," "our," or "us") handles information when you use the BucketMate Proxy browser extension ("the Extension"). We are committed to protecting your privacy and ensuring a secure experience.

What Data We Collect

The Extension is designed with privacy as a core principle. We do not collect or transmit personal data, browsing history, or user account information to our servers.

To perform its function, the Extension temporarily processes request and response data locally on your device:

  • S3 Request Data: The Extension temporarily processes S3-compatible API request URLs, headers, and request bodies to forward signed requests.
  • S3 Response Data: The Extension processes S3-compatible API response headers and bodies to return the storage provider's response to BucketMate Web.

How Data is Stored

The Extension does not store your S3 credentials, access keys, secret keys, session tokens, bucket configuration, provider credentials, request headers, request bodies, or response bodies. This data is processed temporarily in the browser's active memory and discarded after the request completes.

The Extension stores up to 80 recent request metadata records locally on your device so its popup can show proxy activity. These records include the request URL, method, status, timing, and error details. You can clear this history at any time from the Extension popup.

How Data is Used

Any processed data is used solely to facilitate user-initiated storage operations inside the BucketMate Web application (https://web.bucketmate.app). The Extension acts as a local proxy to bypass CORS (Cross-Origin Resource Sharing) restrictions, allowing BucketMate Web to communicate directly with your S3-compatible storage.

The Extension is strictly limited to interacting with the following origins:

  • https://web.bucketmate.app
  • http://localhost (for local development)
  • http://127.0.0.1 (for local development)

Third-Party Services

The Extension communicates directly with your chosen S3-compatible storage provider endpoints (such as Amazon S3, Cloudflare R2, Backblaze B2, DigitalOcean Spaces, Supabase Storage, and Google Cloud Storage). These communications are subject to the privacy policies of your respective storage providers. We do not have access to, nor do we monitor or control, these communications or the data transmitted to your storage providers.

Data Sharing

We do not sell, rent, or share any data processed by the Extension with third parties. No data is used for advertising, marketing, profiling, or tracking. No data is sent to our servers.

Data Retention and Deletion

Request metadata is retained only in the Extension's local storage on your device, up to the most recent 80 records. It is not sent to our servers and can be deleted at any time with the Clear action in the Extension popup. Removing the Extension also removes its locally stored data.

Changes to This Policy

We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated "Last updated" date.

Contact

If you have any questions about this Privacy Policy or the Extension's privacy practices, please contact us at:

Email: support@bucketmate.app