Privacy Policy
Last updated: February 3, 2026
OptiPilot Companion ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how our Chrome extension collects, uses, and safeguards your information.
1. Information We Collect
1.1 Optimizely Data Access
OptiPilot Companion accesses data from your Optimizely account to provide enhanced functionality:
- Experiment and feature flag configurations
- Project and environment settings
- Event and attribute definitions
- Audience and targeting rules
1.2 Authentication Information
To access your Optimizely account, we store:
- Optimizely API tokens (encrypted and stored locally in your browser)
- Session authentication data
1.3 Usage Information
We may collect anonymous usage statistics to improve the extension:
- Feature usage patterns (which tools you use most)
- Error logs and performance metrics
- Extension version and browser information
2. How We Use Your Information
We use the collected information for the following purposes:
- Provide Services: Access and display your Optimizely data within the extension
- Enhance Features: Generate code templates, analyze experiments, and provide recommendations
- Improve Performance: Debug issues and optimize extension functionality
- Support Users: Respond to support requests and provide assistance
3. Data Storage and Security
3.1 Local Storage
Your Optimizely API tokens and preferences are stored locally in your browser using Chrome's secure storage API. This data never leaves your device unless you explicitly sync Chrome settings across devices.
3.2 Data Transmission
All communication with Optimizely's API is conducted directly from your browser to Optimizely's servers using HTTPS encryption. We do not intercept or store this communication on our servers.
3.3 Security Measures
- API tokens are encrypted before storage
- No sensitive data is transmitted to third-party servers
- Regular security audits and updates
4. Third-Party Services
OptiPilot Companion interacts with the following third-party services:
4.1 Optimizely
The extension communicates directly with Optimizely's API to retrieve your account data. Please refer to Optimizely's Privacy Policy for information on how Optimizely handles your data.
4.2 Google Analytics (Optional)
We may use Google Analytics to collect anonymous usage statistics. You can opt out of analytics in the extension settings. No personally identifiable information is collected through analytics.
5. Data Retention
- Local Data: Stored in your browser until you uninstall the extension or clear browser data
- Usage Statistics: Aggregated data retained for 12 months for improvement purposes
- Support Tickets: Contact information retained for 2 years after last interaction
6. Your Rights
You have the following rights regarding your data:
- Access: Request information about data we collect
- Deletion: Delete your local data by uninstalling the extension or clearing browser storage
- Opt-Out: Disable analytics and usage tracking in extension settings
- Portability: Export your settings and configurations from the extension
7. Children's Privacy
OptiPilot Companion is not intended for use by children under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately.
8. International Users
OptiPilot Companion is available globally. If you are using the extension from outside the United States, please note that your data may be transferred to and processed in the United States or other countries where Optimizely operates. By using the extension, you consent to such transfers.
9. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by:
- Updating the "Last updated" date at the top of this page
- Displaying a notification in the extension
- Sending an email if you've provided contact information
Continued use of the extension after changes constitutes acceptance of the updated Privacy Policy.
10. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us:
11. GDPR & CCPA Compliance
11.1 For EU Users (GDPR)
If you are located in the European Economic Area (EEA), you have additional rights under GDPR:
- Right to be informed about data processing
- Right to access your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
11.2 For California Users (CCPA)
If you are a California resident, you have rights under CCPA:
- Right to know what personal information is collected
- Right to delete personal information
- Right to opt-out of the sale of personal information (we do not sell personal information)
- Right to non-discrimination for exercising your rights
To exercise these rights, please contact us using the information in the "Contact Us" section above.
12. Legal Basis for Processing (GDPR)
For EU users, we process your data based on the following legal grounds:
- Contract: Processing necessary to provide the extension services you've requested
- Legitimate Interest: Improving our services and preventing fraud
- Consent: For optional features like analytics (you can withdraw consent at any time)
- Legal Obligation: Compliance with applicable laws and regulations