Privacy policy

As of: 2026-08-07

Controller

[Placeholder: controller name, address, email — to be completed before publication.]

Principles

  • No IP storage: servers do not log IP addresses; no country code is stored.
  • Everything is opt-in: telemetry, site statistics and reports are off by default and individually switchable.
  • Hostnames only: URLs, paths or page content are never transmitted.

Local processing

Filtering of ads, trackers and phishing happens entirely locally in the browser. Filter lists are stored locally; browsing itself sends no data to any server.

Voluntary telemetry (opt-in)

  • Daily ping: a random, locally generated installId (crypto.randomUUID), extension version, language and supporter status.
  • Event batches: technical events around the supporter feature, sent as batched events.
  • Site statistics (separate opt-in): only hostnames of visited sites and the number of requests blocked there — the basis for the public statistics on this website.

Site reports

Reporting a problematic site is an explicit user action. Hostname, category and a voluntary note are transmitted. The installId is only included if the telemetry opt-in is enabled.

Supporter redirect

Clicking the supporter link goes via fwd.browserfirewall.com to the respective shop's home page (with a clickid parameter). This redirect only happens on an active click, never automatically.

Servers and storage

Receiving and storage run on Cloudflare (Worker, R2, Analytics Engine). The server location is set to the EU as far as configurable with Cloudflare. There are no IP logs.

Access and deletion

Telemetry data can only be attributed via the local installId, which you can find in the extension's settings. Access and deletion requests are handled by providing this ID; deleting the extension key or reinstalling creates a new, unlinkable ID.

This website

This website uses no cookies, no tracking, no webfonts and no JavaScript.