OPENZERO // TAB PILOT
Privacy Policy
Effective 30 July 2026
OpenZero Tab Pilot is a consent-controlled browser extension that connects one explicitly granted tab to the OpenZero API origin configured by the user. It has no analytics, advertising, telemetry, or third-party tracking integration.
Data processed for the feature
For each model-planning step, Tab Pilot sends the configured OpenZero API the user-written task, current page URL and title, a bounded visible-text snapshot, bounded headings and interactive-element labels, and recent action-result summaries. Visible page text can contain personal information, so users should grant only pages whose visible content may be sent to their configured OpenZero node.
Data deliberately excluded
Tab Pilot does not intentionally read or send cookies, browser history, screenshots, content from other tabs, input or textarea values, passwords, payment-card information, authentication information, secrets or tokens, one-time codes, CAPTCHA answers, file-upload values, or file contents.
Storage and retention
The configured OpenZero API origin, model, safety settings, and API token are stored in extension-local browser storage until the user changes them, clears the token, or removes the extension. The token is sent only as an authorization header to the exact OpenZero API origin approved by the user and is never injected into page JavaScript.
Tab grants, tasks, pending approvals, and recent action summaries are held in browser session storage and clear on a full browser restart or extension reload. Optional site permissions can persist until the user removes them through Tab Pilot or browser settings. Retention on the user's OpenZero node is controlled by that node's owner and configuration.
Sharing and sale
OpenZero Tab Pilot does not sell personal information. It does not use data for advertising, profiling, credit decisions, or purposes unrelated to its single browser-control feature. Task and page context is transferred only to the OpenZero API origin selected by the user.
Chrome Web Store Limited Use compliance
OpenZero Tab Pilot's use and transfer of information received through browser permissions complies with the Chrome Web Store User Data Policy, including its Limited Use requirements. Data is used only to provide and secure the extension's disclosed single purpose. It is transferred only to the exact OpenZero API origin selected by the user, or when required for security or legal compliance.
Data is never used or transferred for personalised advertising, retargeting, profiling, credit decisions, or sale. Humans do not read user data except with the user's affirmative consent for support, when necessary for security, when required by law, or after the data has been aggregated and anonymised for internal operations.
User control
Users can stop and revoke a tab immediately, forget saved access to a site, clear the saved API token, remove optional site permissions, or uninstall the extension. New origins and consequential actions pause for explicit review.
Security
Use loopback, valid HTTPS, a private VPN, or an SSH tunnel for the OpenZero API. Tab Pilot refuses plain remote HTTP. The extension bundles its executable code and does not load remote code.
Contact
Privacy or security questions can be filed privately through the guidance in the OpenZero security policy. General support is available through OpenZero issues.
This policy describes the Tab Pilot extension itself. A user-operated OpenZero node may have separate retention or access controls chosen by its owner.