Campaign Link Preflight — Privacy Policy

Version 0.1.4 · Updated 28 September 2026

Operator: 소진영. Contact: thwlsdud12251@gmail.com.

Page checks stay on your device

When you choose Scan, the extension reads the current page’s URL, title and anchor links (including link text, destinations and query parameters) to check campaign links. It runs on the main document only. These inputs and findings stay in browser memory; we do not upload them to our service, Gumroad or an analytics provider. Scan results disappear when the popup closes. The Locate action temporarily adds an outline to a link.

Local storage and reports

The extension stores a random installation identifier, usage counters, first and repeat scan times, your sharing preference, and any license key and last verification time in extension-local storage. It does not sync them across devices. The key is not encrypted at rest. Anyone with access to your browser profile may be able to access local storage. Remove the key using Remove saved license. Uninstalling clears extension storage. Exported Markdown reports contain page URLs, query values and link labels; they are saved locally at your request and remain in your downloads after uninstalling. Check them before sharing.

Optional usage measurement

Usage sharing is off by default and is not required for scanning or export. If you enable it, we send only the random installation ID, extension version, first successful scan date, first repeat date, first reuse date at least seven days after activation, total successful scans and checkout clicks. Dates use UTC. We do not send scanned URLs, query values, page titles, DOM, campaign names, destinations, email addresses or your license key in usage records. The installation ID is pseudonymous; it is not a guarantee of absolute anonymity.

The service runs on Cloudflare Workers and D1. Our application does not record IP addresses, user agents or request bodies in logs; the hosting provider necessarily processes network metadata to deliver and protect the service. Usage records expire 90 days after the last received update. You can disable sharing at any time and use Delete shared usage record to request deletion. If the deletion request fails, the interface asks you to retry. After deletion, only the random ID and a deletion-suppression expiry are retained for up to 90 days to prevent in-flight requests from recreating the usage record. Disabling alone does not delete an existing server record. Uninstalling does not send a deletion request.

If you enable usage sharing, the extension sends the fields listed above to the configured usage service. CORS preflight, POST and DELETE were verified against the deployed service before packaging this candidate.

Purchases and licensing

Report export is a $29 one-time purchase, with applicable tax shown at checkout. Gumroad hosts checkout, issues receipts and license keys, and processes payment information under its privacy policy. We do not collect card details in the extension. Gumroad may provide the seller with purchase/customer records for support, refunds and accounting.

When you unlock export or revalidate a saved key, the extension sends the license key and product ID directly to api.gumroad.com. Gumroad’s response may contain customer information; the extension uses the entitlement status and does not store customer name/email or forward that response to analytics. Verification is cached for up to 24 hours; later exports require online revalidation. Usage measurement does not associate installation IDs with purchase identity. No extension account is required. Purchases use the public Gumroad product page at https://thwlsdud.gumroad.com/l/campaign-link-preflight.

Support, sharing and retention

If you email support, we receive your email and anything you choose to send. Avoid attaching sensitive campaign reports unless needed. We use support information only to resolve your request and meet applicable obligations. Payment-provider records follow the provider’s retention requirements and applicable accounting obligations. Contact us for access or deletion requests. We do not sell user data, use it for advertising, or transfer it for credit or lending decisions.

Limited use

Our use of information received from Chrome and Google APIs follows the Chrome Web Store User Data Policy, including its Limited Use requirements. Data is used only for the disclosed campaign-link checks, licensing, support and minimal measurement of this extension’s use.

Changes

We will update this policy and in-product disclosures before materially changing data practices. This policy is bundled for offline access and must also be published at an accessible HTTPS URL before Store submission.