Last Updated: September 2025
Your Privacy is Our Priority
Habito is designed with privacy first. We believe your browsing data should remain yours.
What We Track
Habito monitors the following data:
- URLs of websites you visit
- Number of visits to each site
- Time spent on sites
- Timestamps of visits
Where Your Data Lives
- Cloud Storage: Your browsing data is securely stored in our Supabase database
- User Authentication: Google OAuth is used for secure user identification
- Data Encryption: All data is encrypted in transit and at rest
- Account Required: You need to sign in with Google to use the service
How We Use Your Data
Your cloud-stored data is used to:
- Count how often you visit websites
- Identify your frequently visited sites
- Generate insights and analytics about your browsing patterns
- Sync your data across devices when you sign in
- Provide personalized recommendations
Data Retention
- We keep only the last 30 days of browsing history
- Older data is automatically deleted
- You can clear all data anytime from settings
What We DON'T Do
- ❌ Share your data with third parties (except Google for authentication)
- ❌ Track you across websites beyond what you visit
- ❌ Store passwords or sensitive personal information
- ❌ Use cookies or fingerprinting for tracking
- ❌ Sell or monetize your browsing data
- ❌ Access your browsing history without permission
Your Control
You have complete control over your data:
- View: See all stored data in the extension
- Clear: Delete all data with one click
- Disable: Turn off tracking anytime
- Uninstall: Removes all data immediately
Permissions Explained
- tabs: To track which sites you visit and send data to our servers
- storage: To cache data locally and sync with cloud storage
- history: To analyze your browsing patterns and generate insights
- webNavigation: To detect page navigation and track visits
- notifications: To alert you about repetitive browsing patterns
- activeTab: To access the current tab's URL and title
Data Security
- All data is encrypted using HTTPS/TLS when transmitted
- Supabase provides enterprise-grade security and encryption
- Your data is protected by Google OAuth authentication
- We follow industry-standard security practices
- Regular security audits and updates
Children's Privacy
Habito doesn't knowingly collect data from children under 13. The extension is designed for general productivity use.
Changes to This Policy
If we update this policy, we'll notify you through the extension update notes. The updated policy will be available in the extension.
Open Source
We believe in transparency. Our code will be open-sourced soon so you can verify our privacy practices.
Third-Party Services
- Supabase: We use Supabase for secure cloud database storage
- Google OAuth: We use Google for user authentication
- Vercel: Our web dashboard is hosted on Vercel
Remember: Your browsing data is securely stored and encrypted. You can delete your data at any time.