opencode-chromium

Privacy Policy

Effective date: October 1, 2026

This privacy policy applies to the opencode-chromium extension for Chromium-based browsers (Chrome, Edge, Brave), published by Quindart.

In short

opencode-chromium is a local browser-automation bridge. It lets an AI coding assistant (OpenCode, Codex, MCP clients) drive the browser on your own machine. Cloud decision assistance is off by default. The extension communicates with a local native host. If you explicitly enable a decision provider, the native host sends bounded search/replay intent and candidate descriptions to the service you selected. Page text may contain personal information.

What the extension does

Content boundaries

Action Memory

The opt-in Action Memory feature (off by default) stores a structured, vector-searchable record of agent browser actions in a local SQLite database. By design it contains no personal content: no URLs, window titles, typed text, form values, keystrokes, clipboard contents, screenshots, file paths, or accessibility trees — only action names, hostnames, bounded element labels (≤ 64 characters, passed through a privacy normalizer that strips email addresses, UUIDs, long account-like numbers, URL query strings, tokens, and filesystem paths), outcomes, and timestamps. Steps that need a value or URL at replay time are stored as flags only; the value always comes from the live agent request and is never persisted. Search queries are embedded for the lookup and never stored; searchable chain text is generated purely from the privacy-safe structured fields. There is no encryption because there is nothing personal to protect: the record is a what/where/result log, not a transcript. Delete (memory delete --yes) permanently removes the database. Confirmed actions are never auto-purged; stale failed lessons are cleaned up automatically per the quota and purge settings shown in the Action Memory dashboard (extension popup → Action Memory).

Permissions and why they exist

The extension requests the permissions it needs to operate as a general-purpose automation bridge:

You grant or deny these permissions at load time, and you can remove the extension at any time.

Children

This extension is not directed to children, and it does not collect information from anyone.

Changes

If this policy changes, the updated version will be published at this URL and the extension’s store listing will note the change before it takes effect.

Contact

Questions about this policy?

Email: contact@quindart.com
Website: quindart.com
Publisher: Quindart — 2/F, Tower 1, Tern Centre, 237 Queen’s Road Central, Sheung Wan, Hong Kong