PolicyLens is built on a simple principle: an extension that analyzes privacy policies must itself have an exemplary privacy policy.
PolicyLens ("the extension", "we", "us") is a browser extension developed by NOCTARX that helps users understand and analyze privacy policies and terms of service. This Privacy Policy explains how PolicyLens handles information when you use it.
Short version: PolicyLens does not collect, store, transmit, or sell any personal information about you. Everything the extension does happens locally on your device.
PolicyLens collects nothing about you personally. Specifically, we do not collect:
Your analysis results, policy history, settings, and scores are stored exclusively in chrome.storage.local on your own device. This data never leaves your browser and is not accessible to us or any third party.
PolicyLens makes requests to a small number of external services to provide its features. These are described fully below:
When Auto Policy Scan is enabled, the extension fetches the privacy policy and terms pages of sites you visit to analyze them. These requests go directly from your browser to the target website — no data passes through our servers. The request includes only standard browser headers (User-Agent, Accept-Language).
For sites in the Terms of Service; Didn't Read database, the extension queries api.tosdr.org with only the domain name (e.g., "google.com"). No personal information is included. ToS;DR's privacy policy applies to their service: tosdr.org.
The Email Breach Checker uses k-anonymity: your email is SHA-1 hashed, and only the first 5 characters of the hash are sent to api.pwnedpasswords.com. Your full email address is never transmitted. Results are cached locally for 1 hour. HaveIBeenPwned's privacy policy applies: haveibeenpwned.com/Privacy.
When a policy page is detected as non-English, the extension may send a text sample (up to 3,000 characters of policy text) to Google's free translation endpoint for analysis. This is policy text only — no personal information about you. Google's Privacy Policy applies: policies.google.com/privacy.
None of these services receive your personal information. All requests contain only technical data necessary for the specific feature (domain names, hash prefixes, or policy text snippets).
PolicyLens requests the following Chrome permissions and uses them as described:
PolicyLens stores the following data locally on your device using chrome.storage.local:
All of this data remains entirely on your device. You can clear it at any time via Settings → Policy History → Clear All, or by removing the extension.
PolicyLens contains no advertising, no analytics, no telemetry, and no third-party tracking scripts. We do not partner with advertising networks. We do not sell, rent, or share any data with third parties for commercial purposes.
The extension's source code is available for review at github.com/NOCTARX-projects.
PolicyLens is a general-purpose browser extension not directed at children. We do not knowingly collect any information from children under the age of 13. Since we collect no personal information from any user, this applies equally to all age groups.
If we make material changes to this Privacy Policy, we will update the "Last updated" date at the top of this page and note changes in the extension's changelog. Continued use of the extension after changes constitutes acceptance of the revised policy.
Given that we collect no personal data, material changes are unlikely to affect your privacy in any meaningful way.
Since PolicyLens collects no personal information about you, there is no personal data for us to provide, correct, or delete on your behalf. All data the extension stores is on your own device and under your full control:
contact-noctarx@proton.me
Questions about this Privacy Policy or PolicyLens?