Privacy Policy

Last updated: August 25, 2026

At Nestpane, accessible from https://nestpane.kneeraazon.com and via the Nestpane Chrome Extension, we prioritize your privacy. This Privacy Policy details exactly what data the extension accesses, how it's handled, where it's stored, and who (if anyone) it's shared with — permission by permission.

1. Information We Store Locally

Nestpane is designed to be a strictly local-first experience. The following data is saved only on your device, in Chrome's storage.local, and is never transmitted to any server we control unless you explicitly enable Google Drive backup (see Section 3):

  • Bookmarks & Quick Access: folders, imported Chrome bookmarks, and pinned shortcut URLs/names you add.
  • Notes & Nestodo: note text and tags, and Kanban task cards with their titles, descriptions, and due dates/reminders.
  • Reminders, Habits, Journal & Calendar: standalone reminders, daily habit streaks, journal entries with mood tags, and local calendar events you create.
  • Reading Queue & Tab Sessions: saved URLs to read later, and saved groups of open tabs.
  • Sidebar & settings: your sidebar groups/links, theme, accent color, wallpaper choice, widget layout, and keyboard shortcut preferences.
  • Location coordinates (optional): if you opt into the Weather widget, an approximate location is cached locally to avoid repeated permission prompts.
  • Anthropic API key (optional): if you enable AI features, your own API key is stored locally under a separate, non-synced key — see Section 6.

All of this is deleted completely if you uninstall the extension, and none of it is sent to us.

2. Google Sign-In (Optional)

Signing in with Google is entirely optional. If you choose to sign in, Nestpane requests these scopes:

  • userinfo.email / userinfo.profile: your email address, name, and profile picture, used only to display your identity in the sidebar.
  • drive.appdata: see Section 3.

In Google Chrome, sign-in uses chrome.identity.getAuthToken() — Chrome's own built-in Google sign-in, which caches and refreshes the access token itself; Nestpane never stores it. In other Chromium-based browsers (Brave, Vivaldi, Opera, Arc, Edge), where that Chrome-only mechanism isn't available, Nestpane falls back to the standard chrome.identity.launchWebAuthFlow() API — the resulting token is cached in memory only, for the length of your session, and is never written to disk or sent anywhere except Google's own APIs. Neither path involves a client secret or a server of ours in the middle.

Your email, name, and profile picture are cached locally so they can be shown without re-fetching on every load, and are cleared when you sign out.

3. Google Drive Backup (Optional)

If you sign in and enable sync, Nestpane can back up your bookmarks, notes, tasks, and other locally-stored data (Section 1) to a single file inside a private, hidden app-data folder in your own Google Drive — a folder that only Nestpane can see and access, not your other Drive files, and not visible in Drive's normal UI. This uses the drive.appdata scope, which is intentionally restrictive: it cannot list, read, or modify anything else in your Drive.

Optional end-to-end encryption: if you set a passphrase, your backup is encrypted on-device with AES-GCM (key derived via PBKDF2, 600,000 iterations, 12+ character passphrase required) before it's uploaded. The passphrase itself is stored only in your browser's local storage and is never transmitted anywhere — if you lose it, or clear your browser data, the backup cannot be recovered, including by us.

Turning off sync, or signing out, stops any further backup activity; it does not delete a backup already sitting in your Drive app-data folder (you can remove it yourself via Google's own third-party app permissions page, which also fully revokes Nestpane's access).

4. Browser Permissions We Request

Nestpane requests the following Chrome permissions. Every one is used only to power a specific feature, entirely on-device — none of it is transmitted to a server we control:

  • tabs: Tab Sessions (save/restore groups of open tabs), Smart Organize (sort your open tabs into bookmark folders), and the command palette's open-tabs search.
  • bookmarks: read and write your Chrome bookmarks for the Bookmarks view.
  • history: the History viewer, Analytics/Insights, and command-palette search.
  • downloads: the Downloads viewer.
  • storage: persisting all the local data described in Section 1.
  • topSites: the Analytics/Insights "top visited sites" card.
  • declarativeNetRequest: Focus Mode's optional site-blocking, evaluated entirely on-device by Chrome — Nestpane never sees the sites you visit through this.
  • search: sends a query you type in the command bar to your own default search engine.
  • identity / identity.email (optional): Google sign-in — see Section 2.
  • geolocation (optional): auto-detects your city for the Weather widget.
  • notifications (optional): desktop notifications when a Focus session ends or a habit is untracked for the day.

History, bookmarks, downloads, tabs, and top-sites data are read directly from Chrome's own APIs to render inside the extension — they are never sent to us or any third party, and never leave your device except where explicitly described elsewhere in this policy (Google sign-in/Drive, AI features).

5. Data We Do NOT Collect

Nestpane runs no backend server of its own. We do not collect, log, or have access to:

  • Any of your data on a server we operate — everything in Section 1 stays on your device (or, only if you opt in, in your own Google Drive — Section 3).
  • Telemetry, usage analytics, or crash reports.
  • Advertising identifiers or any data used for ad targeting.
  • Financial or payment information.

6. AI Features (Optional)

Nestpane's AI features — the command palette's "Ask AI," Smart Organize, and the daily briefing — are entirely optional and disabled until you add your own Anthropic API key in Settings. When you use them, the relevant text (your query, or your open tabs' titles/URLs for Smart Organize) is sent directly from your browser to Anthropic's API (api.anthropic.com) using your key. We do not see, log, or relay this data — it goes directly from your device to Anthropic, governed by Anthropic's privacy policy. Your API key is stored only in your browser's local storage, excluded from Drive backups, and never transmitted anywhere except to Anthropic with each AI request you make.

7. Other Third-Party Services

A few features talk directly to third-party services, not through any server of ours:

  • Weather: if enabled, your approximate location (or manually-entered city) is sent to wttr.in to fetch forecast data; ipwho.is and nominatim.openstreetmap.org may be used for IP-based or manual city geocoding.
  • Search Engines: a query typed in the command bar is sent directly to your browser's default search engine.
  • Wallpaper: the "random photo" wallpaper option fetches an image from picsum.photos.
  • Google Fonts: typefaces are loaded from fonts.googleapis.com/fonts.gstatic.com.

Your browser communicates with these services directly; we are not a party to those requests and do not control their own data practices.

8. Children's Information

Nestpane does not knowingly collect any data from anyone, including children under the age of 13. As we do not collect data at all, we do not require parental consent. If you believe your child has provided information to us through the extension (e.g., typing a name into a to-do list), rest assured it is stored only on their local machine and never sent to us.

9. Your Data Protection Rights (GDPR/CCPA)

Because Nestpane does not collect or store your data on our servers, there is no data for us to delete or export on your behalf. You have complete control over your data:

  • Local data: uninstall the Nestpane extension, or use "Clear All Data" inside the extension's settings, to remove everything described in Section 1.
  • Google Drive backup (if used): visit Google's third-party app permissions page to revoke Nestpane's access, and delete the backup file directly from your Drive's app-data storage if you want it removed.
  • To Export: use the extension's built-in export feature (Settings → Data Management) to download your data as a file, or copy individual items from the UI.

10. Changes to This Privacy Policy

We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date at the top. You are advised to review this Privacy Policy periodically for any changes.

11. Contact Us

If you have any questions or concerns about this Privacy Policy or the extension's data handling, please contact us at:

Nestpane Support

kneeraazon@gmail.com