Privacy Policy

Last Updated: March 2026

Please also review our Terms of Service.

Overview

This Privacy Policy explains how NextByte, Inc. ("NextByte," "we," "us," or "our") collects, uses, and protects your information in connection with Tweeks, our browser extension and related services for customizing the web.

Information We Collect

Page Content Data

  • What: HTML structure, visible text, and DOM elements from web pages you're viewing when generating scripts
  • When: Only when you explicitly click generate/modify script
  • Why: Required to understand page context for accurate script generation
  • Scope: Limited to the active tab content at the time of generation

User Input Data

  • What: Your natural language requests describing desired functionality
  • When: When you submit generation requests through the extension popup
  • Why: To process your request and generate appropriate script code
  • Examples: "Change page to dark mode", "Add a filter panel by author", "Remove sidebar"

Generated Scripts

  • What: JavaScript & CSS code generated by our service and any scripts you manually install
  • Where Stored: Locally in your browser and on our servers
  • Why: To manage and execute your scripts, enable generation history, and support sharing features

Generation History & Sharing Data

  • What: Generated scripts, user requests, and optional customizations (titles, descriptions, images)
  • Where Stored: Our secure database, associated with your account
  • Why: To provide access to your generation history and enable you to share scripts with others
  • Visibility: Private by default; public only when you explicitly choose to share via unique link

Product Analytics & Telemetry

  • What: Usage events (e.g., feature usage, script install) and error diagnostics
  • Identifiers: A pseudonymous device ID (distinct ID)
  • Why: Helps us improve reliability, fix bugs faster, and prioritize the features you use most

Feedback & Support

  • What: Your feedback text, rating, and troubleshooting metadata
  • Why: Allows us to respond to issues and improve the product experience
  • When: When you submit feedback

How We Use Your Information

Primary Processing

  • Combine your request with relevant page content and context
  • Send this data to our script generation API for processing
  • Return generated code to your browser
  • Store generated scripts locally for future use

Script Sharing

  • When you share a script, it becomes publicly accessible via a unique URL
  • Shared scripts display your username (generated randomly if not set)
  • You can create an optional public profile to showcase scripts
  • You control what scripts are shared and can disable sharing at any time

We Do NOT:

  • Sell your personal information
  • Use collected data for advertising or build ad profiles about you

Generated Scripts

How Generated Scripts Are Handled

  • Generated scripts and related metadata may be stored locally in your browser and on our servers to provide script execution, history, editing, and sharing features
  • We may use generated scripts to operate, maintain, and improve the service, including improving generation quality and sharing examples in our library
  • If you choose to share a script publicly, it may be displayed with your public profile information and any customizations you provide

Rights and Responsibilities

Questions about ownership, licenses, permitted use, acceptable use, and disclaimers for generated scripts are governed by our Terms of Service.

Data Sharing and Third Parties

External AI Services

  • Purpose: Processes generation requests to create userscripts
  • Data Shared: Page content, user requests, and technical metadata needed to generate scripts
  • Retention: Data is processed by the AI service and not permanently stored by them
  • Security: All communications use HTTPS encryption

Analytics & Telemetry Providers

  • We use PostHog for product analytics and telemetry to understand feature usage and improve reliability
  • These providers receive event data and diagnostics (not your raw browsing content) and are used solely for product improvement

Authentication Providers

  • Supabase Auth
  • Google Auth

Data Storage and Security

Local Storage

  • Generated scripts, script settings, and related data are stored locally in your browser using Chrome's storage and IndexedDB APIs
  • Configuration settings remain on your device
  • You can view, modify, or delete stored scripts through the extension interface

Server Storage

  • Generated scripts and generation metadata are stored in our secure database
  • Scripts remain private unless you explicitly share them via the sharing feature
  • You can manage your generation history, shared scripts, and public profile through the web interface
  • Server-stored data is retained to provide generation history and sharing functionality

Transmission Security

  • All API communications use HTTPS/TLS encryption by default

Your Rights and Controls

Data Control

  • View: Access locally stored scripts through the extension's "Library" and view your generation history on the web
  • Modify: Enable/disable, edit or update any generated or installed scripts
  • Delete: Remove individual scripts from your browser or request deletion of server-stored data via email (we aim to respond to verified deletion requests within 30 days).
  • Share: Control which scripts are public via unique share links and manage your public profile

Extension Permissions

  • Active Tab: Required to capture page content for script generation
  • Storage: Stores your scripts and preferences locally
  • Scripting: Injects your approved scripts into web pages
  • All URLs: Necessary for script execution on any website you choose
  • UserScripts: Chrome API for registering and managing userscripts that run in the page context
  • ClipboardWrite: Enables GM_setClipboard API for userscripts to copy data to clipboard
  • Tabs: Required for GM_openInTab API and managing script execution across browser tabs
  • Notifications: Supports GM_notification API for userscripts to display system notifications
  • Offscreen: Creates background documents for secure API calls and clipboard operations
  • Context Menus: Enables scripts to add browser context (right-click) menu actions
  • Downloads: Enables GM_download API for userscripts to trigger file downloads
  • Identity: Supports browser-based Google sign-in and authentication redirects
  • Unlimited Storage: Supports larger local storage for scripts, settings, and generation-related data

Opt-Out Options

  • Disable the extension to stop all data processing
  • Manually review generated scripts

Children's Privacy

This extension is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you become aware that a child has provided personal information, please contact us to remove such information.

Changes to This Policy

We may update this privacy policy to reflect changes in our practices or legal requirements. Updated policies will be posted here with a new effective date above.

International Users

Our service providers and infrastructure may process data in various locations, including countries that may have different data protection laws than your jurisdiction.

Contact Information

For privacy-related questions, concerns, or requests:

Email: contact@tweeks.io