Summary
Arlo has no backend and no analytics. We do not collect, store, sell, or share any of your data. Your settings and API key stay in your browser. Page content leaves your browser only to reach the model endpoint you configured, and only when you run a task.
What Arlo handles
- Model profiles and preferences — endpoint URLs, model names, and theme. Stored in Chrome’s extension storage on your device.
- API keys — for each profile you choose whether Arlo remembers the key (kept in local extension storage) or holds it for the current browser session only (cleared when the browser closes). Keys are sent only to the endpoint of the profile they belong to.
- Website content — when you give Arlo a task that needs a page, it reads the text of the tab you are viewing. Arlo reads a page only when you ask. The content, together with your prompt, is sent to your configured model endpoint to produce an answer.
- Tab information — to open tabs and group them in an “Arlo” group, Arlo creates tabs and tab groups. Arlo does not keep a record of your browsing history.
What Arlo does not do
- No developer-operated server — Arlo never sends data to us.
- No analytics, telemetry, advertising, or tracking of any kind.
- No sale or transfer of user data to third parties, other than sending your task to the model endpoint you chose.
- No use of data for purposes unrelated to Arlo’s single purpose, or for creditworthiness or lending.
- No remote code — everything Arlo runs ships inside the extension.
Your model provider
The endpoint you configure (for example OpenAI, Anthropic, a proxy, or a local server) receives your prompt and any page content Arlo sends with it. That provider’s own privacy policy and terms govern how it handles that data. If you want everything to stay on your machine, point Arlo at a local model server.
Permissions
| Permission | Why Arlo needs it |
|---|---|
activeTab | Read the page you opened Arlo from, only after you click the toolbar icon. |
scripting | Run the page reader inside the current tab to extract its text. |
sidePanel | Arlo’s interface is the Chrome side panel. |
storage | Save your profiles, API key, and preferences in the browser. |
tabGroups | Put every tab Arlo opens into an “Arlo” group so you can see and close them. |
| Optional site access | Nothing is granted at install. Chrome asks for (a) the origin of your model endpoint, or (b) all pages, if you choose to let Arlo read without a toolbar click. You can revoke either in Chrome at any time. |
Your control
- Stop a running task at any time with one click.
- Delete a profile or key from the options page.
- Revoke site access from the extension’s details page in Chrome.
- Uninstall Arlo to remove all of its stored data from your browser.
Children
Arlo is a general-purpose tool and is not directed at children under 13.
Changes to this policy
If this policy changes, the updated version will be posted on this page with a new date. The full history is public in the repository.
Contact
Questions or concerns? Open an issue at github.com/kaija/arlo-extension/issues.