Privacy Policy

Last updated: May 31, 2026

CommitDSA is committed to ensuring the privacy and security of its users. This Privacy Policy details how we handle user data and information.

1. Data Collection & Processing

100% Serverless & Decentralized: CommitDSA operates entirely on the client-side inside your browser sandbox. We do not host, operate, or maintain any external database or backend servers. We cannot access, view, or store any of your private coding submissions or authentication keys.

2. Credentials Storage

Your sensitive integration credentials, including your GitHub Personal Access Token (PAT), repository path configs, and local problem statistics, are stored locally and securely in your own browser's encrypted sandbox storage (chrome.storage.local).

3. External API Connections

All calls made by the extension are direct HTTPS requests from your browser context to the official APIs of third-party platforms:

4. Chrome Permissions Used

We request the minimum set of permissions necessary to function:

5. Scope Limitation Warning

To protect your account integrity, we advise users to configure their GitHub Personal Access Token (PAT) with only the narrowest scope required: the repo scope. Never grant administrative, user-profile modifications, or organizational access keys to CommitDSA.

6. Changes to this Policy

We may update this policy occasionally to align with web store guidelines. Updates will be reflected in the "Last updated" date above.