← Back to Trackd
Privacy Policy
Last updated: August 27, 2026
In plain English: Trackd is built so your email data never leaves your browser. We don't upload, sell, or share your Gmail content. Subscription detection runs locally on your device. You can revoke access at any time. This policy spells out the details below.
1. What data Trackd accesses
Trackd requests read-only access to your Gmail account via Google's OAuth 2.0 API. Specifically, we request the https://www.googleapis.com/auth/gmail.readonly scope. This allows Trackd to:
- Read email metadata (sender, subject line, date) for billing-related messages
- Read email content for messages that appear to be receipts, invoices, renewal notices, free trial confirmations, or subscription-related communications
Trackd does not request or have the ability to:
- Send, delete, or modify any email
- Access your contacts, calendar, or Google Drive
- Read personal or non-billing emails (we filter for billing-related patterns only)
- Access your bank accounts, payment credentials, or financial accounts
2. How your data is processed
All email analysis and subscription detection runs entirely in your browser using client-side JavaScript. Here's the data flow:
- Trackd fetches a list of recent billing-related emails from Gmail using the read-only API
- The extension analyzes sender names, subject lines, and email patterns locally in your browser to detect known subscription merchants
- Detected subscriptions are stored using
chrome.storage.local — browser-local storage that stays on your device
- Your email content is never transmitted to any external server, including ours
3. Where your data lives
Subscription data (service names, prices, renewal dates) is stored locally in your browser's chrome.storage.local. This storage is scoped to the Trackd extension and does not sync to any cloud service unless you explicitly enable optional cloud sync in the future.
Trackd does not currently operate any cloud servers or databases that store user data. There is no backend API, no user account system, and no persistent connection to any server beyond the initial Gmail API call.
4. What we collect (analytics)
We use a self-hosted Umami analytics instance (umami.andreakis.org) to collect anonymous usage statistics about the landing page only. Umami collects:
- Page views and referrer URLs
- Browser type and device category
- Country-level location (approximate, IP-based)
Umami does not use cookies and does not collect personally identifiable information. No analytics are collected from the Chrome extension itself (if and when it is installed).
When you submit your email to the waitlist form, it is sent to Netlify Forms for the sole purpose of contacting you when Trackd launches. Your email address will not be sold, shared, or used for any purpose other than Trackd launch notifications and occasional product updates (with an unsubscribe option).
5. Data retention and deletion
- Local data: All locally stored subscription data is deleted when you uninstall the Trackd extension from Chrome. You can also clear extension data from Chrome's extension settings at any time.
- Waitlist email: Your email address is retained until you unsubscribe or we delete the waitlist database. You can request deletion at any time by emailing trackd@deanware.com.
- Gmail access: You can revoke Trackd's Gmail access at any time from myaccount.google.com/permissions.
6. Third-party services
Trackd uses the following third-party services:
- Google Gmail API — To read billing-related emails with your explicit consent. Subject to Google's Privacy Policy.
- Netlify — Landing page hosting and form processing (waitlist signups). Subject to Netlify's Privacy Policy.
- Umami — Self-hosted, privacy-friendly analytics. No user data is shared with third parties.
7. Chrome Web Store compliance
Trackd complies with Google's Chrome Web Store Program Policies, including the User Data Privacy requirements. Specifically:
- We only request the minimum permissions needed for the extension to function
- All data handling is described accurately in this privacy policy
- We do not sell or transfer user data to third parties
- We do not use user data for purposes beyond the core functionality
- Users can revoke access and delete data as described above
8. Changes to this policy
If this policy changes materially, we will update the "Last updated" date at the top and notify waitlist members by email. We will never reduce your privacy rights without explicit consent.
9. Contact
Questions about this policy? Reach out:
Email: trackd@deanware.com
← Back to Trackd