PageStar Privacy Policy

Privacy information for the PageStar browser extension

Effective date: September 10, 2026

PageStar is local-first. The developer operates no PageStar account, analytics, advertising, or data-collection server. Optional remote sync only uses a destination configured and approved by the user.

PageStar is a browser extension for Firefox, Google Chrome, and Microsoft Edge that saves page markers, notes, excerpts, image annotations, tags, and related page metadata.

Data stored by the extension

PageStar can store the following data in the browser's extension profile:

Saved page content and remote-sync credentials are stored locally. General extension preferences use the browser's storage.sync API. Depending on the browser and the user's account settings, Firefox, Chrome, or Edge may synchronize those preferences through the user's browser account under the browser provider's terms. Page content, image data, remote-sync credentials, recovery points, and encryption keys are not placed in storage.sync by PageStar.

When data is transmitted

PageStar does not transmit saved content to a server operated by the developer. Network transmission occurs only in these cases:

  1. User-enabled remote sync. When the user enables WebDAV or GitHub Gist sync and grants the applicable data-transmission consent, PageStar sends a snapshot to the destination chosen by the user. Firefox uses its built-in data-collection permission prompt. Chrome and Edge use PageStar's in-product approval dialog before any remote-sync request. The snapshot can include page URLs and titles, saved excerpts and images, notes, tags, page interaction metadata, extension settings selected for sync, a random device identifier, and synchronization metadata. New sync profiles default to client-side end-to-end encryption; legacy profiles remain plaintext unless the user explicitly migrates them. Authentication information is sent only to the configured provider as needed to authenticate the request. WebDAV endpoints must use HTTPS. GitHub Gist requests use the GitHub HTTPS API; when the API truncates embedded file content, PageStar downloads the complete file from a validated HTTPS URL on gist.githubusercontent.com without forwarding the GitHub token.
  2. Page and PDF handling. PageStar may request the current or a saved page URL to identify a PDF or recover a missing page title. Such a request goes to that page's own server and may include cookies that the browser would normally send to that site.

The destination services process requests under their own policies. GitHub Gist is governed by GitHub's privacy terms, and a user-provided WebDAV service by that service's operator.

Permissions and user control

Local marking, notes, search, overview, import, and export work without granting remote-sync data permissions.

Remote sync is off by default. Firefox displays its data-transmission permission request when the user first enables it; Chrome and Edge display PageStar's detailed approval dialog. If consent is declined or later revoked, PageStar blocks manual and automatic remote-sync network access and disables the saved sync schedule. Users can also turn off sync, remove local sync profiles and credentials, delete individual records and recovery points, clear PageStar data, or uninstall the extension.

PageStar declares private/incognito browsing as not allowed in Firefox, Chrome, and Edge.

Retention and deletion

Local records remain until the user deletes them, clears the extension's data, or removes the extension. Local recovery points are limited by count and size and can be deleted from PageStar settings.

Removing a local remote-sync profile does not delete a snapshot already stored by a third-party WebDAV or GitHub service. The user must delete that remote file or Gist through the selected provider. Retention of browser-synchronized preferences and third-party remote data is controlled by the respective service.

Sharing, sale, analytics, and advertising

The developer does not sell PageStar data, use it for advertising, build browsing profiles, or operate analytics or telemetry collection. PageStar shares data only with the destination selected by the user or with the page services described above to provide the requested feature. Access to personal or sensitive user data is limited to providing and improving PageStar's single user-facing purpose. The developer does not transfer it for advertising, creditworthiness, lending, or unrelated purposes, and does not permit humans to read it except where the user gives specific consent for support, where required for security or law, or where data has been aggregated and anonymized for internal operations. PageStar's use of information complies with the Chrome Web Store User Data Policy, including the Limited Use requirements.

Security

Remote synchronization uses HTTPS. When end-to-end encryption is enabled, PageStar encrypts snapshot content on the client with AES-256-GCM; the password and recovery key are not uploaded. Encryption does not hide file size, timestamps, account metadata, or sync frequency, and it does not protect an already compromised unlocked device. Remote credentials are excluded from PageStar backup and synchronization snapshots. PageStar validates downloaded snapshots before import and maintains local recovery points for supported sync operations. No software can guarantee absolute security; users should protect their browser profile, browser-sync account, sync password, recovery key, and remote-provider credentials.

Changes and contact

Material changes to this policy will be published with a new effective date. Questions or privacy requests can be sent to yingfc5000@outlook.com.

PageStar 隐私政策

生效日期:2026 年 9 月 10 日

PageStar 采用本地优先设计。开发者不运营 PageStar 账户、分析、广告或数据收集服务器。可选远程同步仅使用用户自行配置并明确授权的目标服务。

PageStar 是一款适用于 Firefox、Google Chrome 和 Microsoft Edge 的浏览器扩展,用于保存页面标记、便签、网页摘录、图片标注、标签及相关页面元数据。

扩展保存的数据

PageStar 可在浏览器的扩展配置中保存:

页面内容和远程同步凭据保存在本机。一般扩展设置使用浏览器的 storage.sync API;根据浏览器及用户的账户设置,Firefox、Chrome 或 Edge 可能依照相应浏览器服务商的条款,通过用户的浏览器账户同步这些偏好。PageStar 不会把页面内容、图片数据、远程同步凭据、本地恢复点或加密密钥写入 storage.sync

数据何时会被传输

PageStar 不会把保存的数据发送到开发者运营的服务器。仅在以下情况下发生网络传输:

  1. 用户启用远程同步。 用户配置 WebDAV 或 GitHub Gist 并授予相应的数据传输同意后,PageStar 会向用户选择的目标发送同步快照。Firefox 使用浏览器内建的数据收集权限提示;Chrome 和 Edge 会在首次远程同步请求前显示 PageStar 应用内授权对话框。快照可能包含页面地址与标题、摘录与图片、便签、标签、页面交互元数据、用户选择同步的扩展设置、随机设备标识和同步元数据。新建同步配置默认使用客户端端到端加密;已有配置保持明文,除非用户显式迁移。认证信息只会在鉴权所需时发送给所配置的服务。WebDAV 必须使用 HTTPS,GitHub Gist 使用 GitHub HTTPS API;当 API 截断内嵌文件内容时,PageStar 会从经过校验的 gist.githubusercontent.com HTTPS 地址下载完整文件,并且不会转发 GitHub Token。
  2. 页面与 PDF 处理。 PageStar 可能请求当前页面或已保存页面的地址,以识别 PDF 或恢复缺失的页面标题。请求发往该页面自身的服务器,并可能包含浏览器通常会向该网站发送的 Cookie。

目标服务按其自身政策处理请求,包括 GitHub 和用户自行选择的 WebDAV 服务商。

权限与用户控制

本地标记、便签、搜索、总览、导入和导出无需授予远程同步数据权限。

远程同步默认关闭。用户首次启用时,Firefox 会显示数据传输权限请求,Chrome 和 Edge 会显示 PageStar 的详细应用内授权对话框。若用户拒绝或之后撤销同意,PageStar 会阻止手动及自动远程同步的网络访问,并停用已保存的同步计划。用户还可关闭同步、删除本地同步配置与凭据、删除单条 PageStar 数据及恢复点、清除全部数据或卸载扩展。

PageStar 在 Firefox、Chrome 和 Edge 中均声明不允许在隐私或无痕窗口中运行。

保留与删除

本地记录会保留到用户删除、清除扩展数据或卸载扩展为止。本地恢复点受数量和容量限制,并可在 PageStar 设置中删除。

删除本地同步配置不会删除已经存入第三方 WebDAV 或 GitHub 的快照;用户需要在所选服务中删除对应远端文件或 Gist。浏览器同步偏好和第三方远端数据的保留期限由相应服务控制。

共享、出售、分析与广告

开发者不会出售 PageStar 数据,不将其用于广告,不建立浏览画像,也不运营分析或遥测收集。PageStar 只会为实现用户请求的功能,将数据发送给用户选择的目标或上文说明的页面服务。对个人或敏感用户数据的访问,仅限于提供和改进 PageStar 的单一用户可见用途;开发者不会将其转移用于广告、信用评估、借贷或无关用途,也不会允许人工读取,除非用户为支持服务给予明确同意、出于安全或法律要求,或数据已经汇总并匿名化用于内部运营。PageStar 对信息的使用遵守 Chrome 网上应用店用户数据政策,包括 Limited Use(有限使用)要求。

安全

远程同步使用 HTTPS。启用端到端加密后,PageStar 会在客户端使用 AES-256-GCM 加密同步快照;加密口令和恢复密钥不会上传。加密不会隐藏文件大小、时间戳、账户元数据或同步频率,也不能保护已经失陷且处于解锁状态的设备。远程凭据不会写入 PageStar 备份或同步快照。PageStar 会在导入前校验下载的快照,并为支持的同步操作维护本地恢复点。任何软件都无法保证绝对安全;用户应妥善保护浏览器配置、浏览器同步账户、同步密码、恢复密钥和远端服务凭据。

变更与联系

本政策如有重大变更,将更新生效日期并公开发布。如有隐私问题或请求,请联系 yingfc5000@outlook.com