Privacy Policy
This Privacy Policy describes how Perfect YouTube Bookmarker (“the Extension”, “we”) handles information when you use the Chrome extension and related cloud sync service.
1. Overview
You can use the Extension for free on a single device. In that case, your bookmark notes, timestamps, and screenshots stay on your computer. If you buy cloud sync, the same data can be stored on our servers so it works across your devices.
2. Data we process
On your device (always)
- Bookmark notes and timestamps you create on YouTube videos
- Optional screenshots you attach to notes
- If you purchase sync: your User ID and API token, stored in extension storage so you stay signed in
On our servers (only with paid cloud sync)
- Your notes, timestamps, video IDs/titles, and screenshots
- Account identifiers (User ID) and a hashed API token
- Purchase-related metadata from Stripe (for example payment session id and email if Stripe provides it)
3. How we use data
- To provide bookmarking features on YouTube
- To sync your notes and screenshots across devices when you choose a paid plan
- To process payments and grant access (via Stripe)
- To operate, secure, and improve the service
We do not sell your personal data. We do not use your notes for advertising.
4. Payments
Payments are processed by Stripe. We do not store your full card details. Stripe’s privacy policy applies to payment processing: https://stripe.com/privacy.
5. Hosting & processors
Cloud sync data is hosted on Cloudflare (Workers, D1 database, R2 object storage). See Cloudflare’s privacy policy: https://www.cloudflare.com/privacypolicy/.
6. Permissions
The Extension requests Chrome permissions only to work on YouTube (add bookmarks UI, screenshots, seek to timestamps) and, if you enable sync, to talk to our API. Clipboard access is used only when you paste a screenshot or export/copy notes.
7. Retention
- Local data remains until you delete notes or remove the Extension
- Cloud data remains while your account is active; yearly plans expire after the paid period unless renewed
- You may ask us to delete your cloud account data by contacting us (see below)
8. Security
API tokens are stored hashed on the server. Keep your token private — anyone with it can access your synced notes. Use HTTPS for all network communication.
9. Children’s privacy
The Extension is not directed at children under 13, and we do not knowingly collect data from children under 13.
10. Changes
We may update this policy from time to time. The “Last updated” date at the top will change. Continued use after updates means you accept the revised policy.
11. Contact
Questions or deletion requests: xiaoouwangfrance@gmail.com