# Browser Extension Privacy Policy

> Privacy details and disclosures for the BucketMate Browser Extension (BucketMate Proxy).

Canonical: https://www.bucketmate.app/browser-extensions/privacy

Last updated: July 23, 2026

Parent: https://www.bucketmate.app/browser-extensions.md

## Introduction

This Privacy Policy explains how BucketMate ("we," "our," or "us") handles information when you use the BucketMate Proxy browser extension ("the Extension").

## What Data We Collect

The Extension is designed with privacy as a core principle. We do not collect or transmit personal data, browsing history, or user account information to our servers.

To perform its function, the Extension temporarily processes request and response data locally on your device:

- **S3 Request Data:** temporarily processes S3-compatible API request URLs, headers, and request bodies to forward signed requests.
- **S3 Response Data:** processes S3-compatible API response headers and bodies to return the storage provider's response to BucketMate Web.

## How Data is Stored

The Extension does not store your S3 credentials, access keys, secret keys, session tokens, bucket configuration, provider credentials, request headers, request bodies, or response bodies. This data is processed temporarily in the browser's active memory and discarded after the request completes.

The Extension stores up to 80 recent request metadata records locally on your device so its popup can show proxy activity. These records include the request URL, method, status, timing, and error details. You can clear this history at any time from the Extension popup.

## How Data is Used

Any processed data is used solely to facilitate user-initiated storage operations inside the BucketMate Web application (https://web.bucketmate.app). The Extension acts as a local proxy to bypass CORS restrictions.

Allowed origins:

- https://web.bucketmate.app
- http://localhost (local development)
- http://127.0.0.1 (local development)

## Third-Party Services

The Extension communicates directly with your chosen S3-compatible storage provider endpoints. These communications are subject to the privacy policies of your storage providers. We do not monitor or control those communications.

## Data Sharing

We do not sell, rent, or share any data processed by the Extension with third parties. No data is used for advertising, marketing, profiling, or tracking. No data is sent to our servers.

## Data Retention and Deletion

Request metadata is retained only in local extension storage (up to 80 records). It is not sent to our servers and can be deleted with Clear in the popup. Removing the Extension also removes local data.

## Changes to This Policy

We may update this Privacy Policy from time to time. Changes are posted on this page with an updated "Last updated" date.

## Contact

Email: support@bucketmate.app
