Privacy Policy

Effective July 19, 2026

This policy covers both the aboutweb website at aboutweb.cx and the aboutweb Chrome extension. It describes exactly what we collect, why we collect it, who we share it with, and how you can get it deleted.

The short version: we collect the minimum needed to run your account, bill you if you subscribe, and stop abuse of our free tier. We do not collect your browsing history, we do not build advertising profiles, and we do not sell your data to anyone.

Who we are

aboutweb is a website and Chrome extension that produces summaries of public companies and websites. In this policy, “we” and “aboutweb” refer to the operator of aboutweb.cx, and “you” refers to anyone using the site or the extension.

What we collect

Account information. If you sign in with Google, we receive your email address, name, and profile image from Google. If you sign up with an email and password, we store your email address and a hashed password — we never store your password in readable form. We also store the OAuth tokens Google issues so we can keep you signed in.

Session data. We issue a session token so you stay signed in between visits. The extension stores this same token locally so it can talk to your account.

Analyzed domains. When you run an analysis, we record the domain you analyzed along with your user ID and a timestamp. We use this to enforce daily limits on the free tier and to show you your own usage. We record the domain only — not the full URL, not the page contents, and not the rest of your browsing.

Saved bookmarks. If you bookmark a company, we store that domain against your account.

IP addresses and service analytics. We log service events — an analysis request, a cache hit, an error — together with the domain involved and the requesting IP address. IP addresses let us apply daily limits to visitors who are not signed in, since there is no account to count against. We use these logs to run and debug the service, not to profile you.

Billing information. If you subscribe, Stripe processes your payment and we store your Stripe customer ID, subscription ID, plan, status, and billing period. Your card number never reaches our servers — Stripe handles it directly.

Generated company reports. The reports we generate about public companies and websites are cached and reused across all users. These describe public organizations, not you, and are not linked to your identity when served to others.

How the Chrome extension behaves

The extension is deliberately narrow in what it touches. Specifically:

  • Current tabThe extension reads the URL of your active tab so it can offer to analyze that site. It sends the domain to our servers only when you actually request an analysis. It does not stream your tabs, your history, or your page contents to us in the background.
  • Local storageYour auth token, your basic account details, and cached analysis reports are stored in chrome.storage.local on your own machine. Cached reports exist so reopening a company is instant. Clearing them is covered under “Your choices” below.
  • CookiesThe extension reads session cookies scoped to aboutweb.cx only, so that signing in or out on the website keeps the extension in the same state. It cannot and does not read cookies for any other site.
  • LinkedIn company pagesThe extension includes a script that runs on linkedin.com/company/*pages. Its only job is to read the company’s linked website address from the page so we can resolve which domain that LinkedIn profile belongs to. It extracts that domain and nothing else — it does not collect your LinkedIn profile, your connections, your feed, or your messages.
  • No browsing historyWe do not collect, store, or transmit your browsing history, and we do not sell or rent any user data to third parties.

Why we use your data

We use the data above only to:

  • Create your account and keep you signed in.
  • Generate the analyses you ask for.
  • Enforce free-tier daily limits and prevent abuse of the service.
  • Process subscriptions and handle billing questions.
  • Diagnose errors and keep the service running.
  • Reply to you when you contact support.

We do not use your data for advertising, and we do not use it to train our own models.

Who we share it with

We share data only with the service providers needed to operate aboutweb, and only the minimum each one needs:

  • OpenRouterReceives the domain being analyzed and the public information we have gathered about it, and routes that request to the AI model that writes the summary. We do not send your identity, email, or account details.
  • StripeProcesses payments and subscriptions, and receives the billing details you enter during checkout.
  • GoogleHandles sign-in if you choose Google as your login method, and tells us your email, name, and profile image.
  • Hosting and database providersStore the data described above so the service can run.

We may also disclose information if we are legally required to, or where it is necessary to protect our rights or the safety of others. We do not sell your personal information.

How long we keep it

Account data is kept for as long as your account exists. Usage records and service logs are kept while they are useful for enforcing limits and debugging, and are pruned once they are not. Billing records are retained as long as we are required to keep them for tax and accounting purposes. Cached company reports are not personal data and may be kept and refreshed indefinitely.

When you ask us to delete your account, we remove your account record, usage history, and bookmarks.

Your choices and rights

Depending on where you live, you may have the right to access, correct, export, or delete your personal data, to object to or restrict how we use it, and to withdraw consent. We honor these requests regardless of where you are.

  • To request access to or deletion of your data, email us at support@aboutweb.cx. We respond within 30 days.
  • To cancel a subscription, use the billing portal in your account dashboard.
  • To clear what the extension has stored locally, sign out from the extension or remove it from Chrome, which discards its stored token and cached reports.

Security

Traffic to aboutweb is encrypted in transit over HTTPS. Passwords are stored hashed, never in plain text. Access to production data is limited to what is needed to operate the service. No system is perfectly secure, but we take reasonable measures to protect your information.

Children

aboutweb is not directed at children under 13, and we do not knowingly collect personal information from them. If you believe a child has given us personal information, contact us and we will delete it.

Changes to this policy

If we make material changes to this policy, we will update the effective date above and, where the change is significant, notify you through the service. Continuing to use aboutweb after a change means you accept the updated policy.

Contact us

Questions about this policy, or about what we hold on you? Email support@aboutweb.cx.