Privacy Policy
EFFECTIVE 2026-06-10
The short version: LinkCrusher is local-first. Everything you build lives in your browser. If you create an account, we store your email and your dashboard so it can sync — protected in transit and at rest, visible only to your account. We run no analytics, no ads, and we never sell data.
What stays on your device
Your boards, links, notes, to-dos, widget settings, themes, and uploaded background images are stored in your browser's local storage. With no account, nothing ever leaves your machine except the widget requests listed below. Your news read-state never syncs anywhere.
If you create an account (cloud sync)
We store: your email address, a password hash (we never see your password), and your dashboard contents — boards, links, notes, to-dos, settings, including uploaded background images — in our database (Supabase). Protections: TLS in transit, encryption at rest, and row-level security so each account can only ever read its own rows.
Retention: your current dashboard plus a rolling ~30-day version history (the snapshots you can restore from Settings → Data). Signing out leaves your local copy on this device — use a private window on shared computers, or remove the extension's data from your browser.
Widget requests — what leaves the browser, and to whom
Widgets fetch public data directly from their providers. Requests carry your IP address (like any web request) and the specifics below — nothing else about you.
| Widget | Provider | What's sent |
|---|---|---|
| Weather | Open-Meteo (+ its geocoder) | The city names you add and their coordinates |
| Radar | RainViewer + Carto basemap | Map tile coordinates (≈ city-level area) |
| Stocks | Yahoo Finance | Your ticker symbols |
| Crypto | CoinGecko | Coin ids and your quote currency |
| Currency | Frankfurter (ECB) | Currency codes |
| News | The outlets you pick (20+ catalog) | Feed requests; article images load from each outlet |
| Local news | Zippopotam.us, then Google News | Your ZIP code; the resulting "City, ST" search query |
| Speed test | Cloudflare | Synthetic test traffic only |
| Search | Your chosen engine (Google, Bing, DuckDuckGo, Kagi, or custom) | The query, when you search |
| Embed | The site you choose to frame | Loads directly — that site sees the visit like any other |
| Photo gallery | The hosts of image URLs you add | Requests for those images |
| Link tiles | Google's favicon service | The hostname of each saved link |
What we never do
- No analytics or telemetry
- No ad tech, no tracking pixels
- No selling, renting, or sharing your data
- No reading your dashboard for any purpose other than serving it back to you
The extension's manifest permission list is the complete ceiling of what it can reach.
Your controls
- Export or import your entire dashboard as a file (Settings → Data)
- Your dashboard data stays on your device and works offline; it only leaves your machine if you create an account for sync
- Restore any version from the last ~30 days
- Delete your account and all synced data by emailing support@linkcrusher.com — we delete the account and everything attached to it
Changes
If this policy changes, we'll update this page and its effective date.