TabRollback

Privacy

Local first means local.

TabRollback is designed to protect browsing-session recovery data without turning that data into a cloud profile.

Effective 30 August 2026

Core promise: TabRollback does not upload your saved tab URLs, tab titles, window structure, snapshots, recovery logs or export passwords.

1. Scope and controller

This Privacy Policy explains how the TabRollback browser extension processes information. “TabRollback”, “we”, “us” and “our” mean the operator identified as the seller on your checkout page or receipt.

2. Information stored on your device

TabRollback does not capture tab or window details until you review the in-product disclosure and select Enable local protection. If you do not enable it, no browsing-session snapshot is created.

TabRollback uses browser extension storage to keep:

  • restorable tab titles, URLs and window structure;
  • automatic and manual snapshot history;
  • settings, recovery checks and recovery logs; and
  • a random RevenueCat purchase-recovery identifier used to verify Pro access.

Incognito windows and restricted browser-internal pages are excluded from new captures. TabRollback does not read page contents or inject scripts into websites.

3. Information sent to billing providers

When you check, purchase or recover Pro access, TabRollback sends the random purchase-recovery identifier to RevenueCat to retrieve subscription entitlement status. Checkout is hosted by RevenueCat and Stripe. Those providers process purchase details, contact information, payment information, tax information and standard request metadata under their own privacy policies: RevenueCat Privacy Policy and Stripe Privacy Policy.

A fresh install does not contact RevenueCat automatically. After you explicitly check or recover Pro access, TabRollback may revalidate that entitlement when the saved result is stale, no more than once in 24 hours under normal operation.

TabRollback does not send saved tab titles, URLs, snapshots, recovery logs or export passwords to RevenueCat or Stripe.

4. Standard network metadata

RevenueCat, Stripe and ordinary network infrastructure may receive metadata such as IP address, user agent, request time and diagnostic information when their services are contacted. TabRollback does not use this metadata to build an advertising profile.

5. Encrypted exports

Encrypted exports use AES-256-GCM with a key derived locally from the password you provide. TabRollback does not store or transmit the password or derived encryption key. We cannot recover a forgotten export password.

6. Purposes and legal bases

Local session data is processed to provide the recovery functionality you request. Purchase and entitlement information is processed to perform the subscription contract, prevent misuse, maintain security and meet legal, accounting and tax obligations. Where consent is legally required, we will request it.

7. Retention and deletion

Local data remains in browser extension storage until you delete it, reset the product, remove the extension, or browser storage is cleared. Retention limits selected in TabRollback may remove older snapshots automatically. Billing providers retain transaction and entitlement records according to their policies and legal obligations.

8. Sharing and selling

We do not sell personal data, run behavioural advertising, or create contact lists from TabRollback use. Information is shared only with service providers needed for billing, entitlement verification, security, infrastructure and legal compliance, or where required by law.

The use of information received from Chrome APIs adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements. TabRollback uses browsing-session details only to provide the local recovery features you enable; it does not use or transfer them for advertising, creditworthiness, lending, or unrelated purposes. The operator does not receive this locally stored browsing-session data and has no product or support route to read it; people with access to your Chrome profile may be able to view it locally.

9. International processing

RevenueCat, Stripe and their subprocessors may process information outside your country. They are responsible for appropriate transfer safeguards for the information they process.

10. Security

TabRollback uses least-privilege browser permissions, excludes incognito capture, avoids page-content access, validates restore inputs and encrypts password-protected exports locally. No system is perfectly secure; protect your device, browser profile, export files, passwords and purchase-recovery identifier.

11. Your choices and rights

You can delete individual snapshots using TabRollback controls. Removing the extension clears its Chrome extension storage, subject to Chrome’s own storage behaviour. Depending on where you live, you may have rights over billing or account information processed by us or our providers, including access, correction, deletion, restriction, objection and portability. Reply to your purchase receipt to make a request.

12. Children

TabRollback is not directed to children below the age at which they can independently consent to online services in their country. We do not knowingly collect children’s personal data.

13. Changes

We may update this policy when the product, providers or law changes. We will update the effective date and provide any notice required by law.

14. Contact

For privacy questions or rights requests, reply to your TabRollback purchase receipt. That routes your message to the support address associated with the seller account.