Privacy Policy

Last updated: July 2026

The short version

Swoop's free tier classifies your tabs entirely on your device — tab data never leaves your browser. (Optional sign-in adds account-status calls: sign-in state, usage counters, referral status — never your tabs.) Paid tiers send tab metadata — just the title, URL, and domain — to our backend for AI classification. It's processed in memory and discarded: never stored by us, never sold, and never used to train AI models. We never send page content, screenshots, or your browsing history.

Free tier — what we collect

Nothing about your tabs. Free-tier classification runs entirely on your device — no account required, no tracking. Everything — your tab classifications, corrections, and settings — stays in chrome.storage.local. If you choose to sign in while on the free tier (for referrals, or before upgrading), your browser makes account calls — sign-in state, usage counters, and referral status — but your tab titles and URLs still never leave your device.

Pro & Premium — what we collect

When you sign in and subscribe to a paid tier, we collect the minimum data needed to deliver AI features and manage your account:

  • Email address — for authentication via Supabase Auth (Google OAuth or magic link)
  • Anonymous device ID — a randomly generated UUID stored in your extension, used to link usage to your account
  • Tab metadata — title, URL, and domain of tabs sent to our backend for AI classification. Processed in-flight, then discarded — never stored (see "What we can see" below). Never page content, never screenshots, never embeddings computed on your device.
  • Usage counts — number of AI calls per day, for rate limiting your plan
  • Subscription data — Stripe customer ID, subscription status, plan tier, renewal date

What we can see

Even on paid tiers, our servers can see surprisingly little. AI requests are processed in memory and discarded — no tab title, URL, or content is ever written to our database. What we can see:

  • Usage counts — which feature you called and on what day, for rate limiting. Never what was in the request.
  • Account & subscription info — email, plan tier, and Stripe subscription status
  • What you explicitly send us — if you submit feedback, we store the message you typed (and the page URL it was sent from, so we can reproduce bugs)

How Swoop learns

When you drag a tab to a different group or correct a category, Swoop remembers — right on your device. Corrections live in your browser's local storage and personalize classification locally. They are not sent to our servers, and we never train AI models on your browsing.

Coming soon: community corrections. We're building an optional way to share corrections — anonymized and stripped of any identifiers — so everyone's defaults get better. It will be strictly opt-out: you can turn it off anytime in Settings, and nothing is collected until the feature launches. The consent toggle already ships in the extension today, so your choice is honored from day one.

A note on Firefox

Firefox doesn't yet support the offscreen API that Swoop's on-device AI classifier needs, so on-device AI isn't available there. On Firefox, the free tier classifies tabs with Swoop's local domain database — still 100% on your device, still zero tab data leaving your browser — and AI classification is available through the paid cloud tier.

What we DON'T collect

  • Page content — we never read, save, or transmit what's on the pages you visit
  • Browsing history — the extension has no history permission
  • Cookies, form data, passwords, or anything you type into websites
  • Screenshots, DOM snapshots, or any content rendered by the page
  • Personal files, downloads, or anything outside your open tabs

How we use it

  • To classify your tabs into categories (Development, Shopping, etc.) and topic groups (e.g. "React hooks tutorials")
  • To enforce rate limits on your plan
  • To process payments through Stripe and keep your subscription active
  • To improve classification accuracy for everyone — anonymized community corrections, coming later. Nothing is collected until it launches, and you can opt out anytime in the extension's Settings (see "How Swoop learns" above)

Third-party services

We rely on a small set of trusted providers:

  • Supabase — database, authentication, and Edge Functions. Stores your account and subscription data in the EU region.
  • Stripe — payment processing. PCI-compliant. We never see your card details.
  • Anthropic — AI classification (Claude). We send tab metadata only. Anthropic does not train on API inputs and automatically deletes API data within 30 days at most (retained longer only if flagged by their safety systems).
  • Voyage AI — embeddings for topic detection. Receives tab titles and domains only (no full URLs), not identifiable to you. Our organization has opted out of Voyage's data training, so your data is deleted immediately after processing and never used to train their models.
  • Resend — email delivery for waitlist updates and magic link sign-in.
  • Vercel — hosts swooptabs.com. Analytics are anonymous and aggregated.

Your rights (GDPR)

If you're in the EU or UK, you have the right to access, export, correct, or delete your data at any time. Email us at hello@swooptabs.com and we'll respond within 48 hours. You can also delete your account directly from the extension popup — all your data is removed from our servers within 48 hours.

Data retention

  • Account data: retained until you delete your account
  • Tab metadata: never stored by Swoop — processed in memory, then discarded. Our AI providers don't keep it either: Anthropic auto-deletes API data within 30 days at most, and Voyage AI deletes it immediately after processing
  • Usage logs: each entry holds only a feature name and date — never tab data — and is retained until you delete your account
  • After account deletion: 48-hour maximum before complete removal

Cookies

swooptabs.com uses only essential cookies for Supabase Auth sessions. No tracking cookies, no advertising cookies, no cross-site tracking. The Chrome extension uses no cookies at all — it stores data in chrome.storage.local.

Changes to this policy

We'll update this policy if we add new data collection or third-party services. Material changes will be announced by email to account holders and in the extension popup at least 30 days before they take effect.

Contact

Privacy questions? Reach out at hello@swooptabs.com. See also our Terms of Service.