Privacy Policy
Last updated: June 17, 2026
This Privacy Policy explains how Markmez ("we", "us", "our") collects, uses and protects your information when you use the Markmez browser extension and website (collectively, the "Service"). By installing or using Markmez, you agree to the practices described here.
1. Information we collect
We keep data collection to the minimum necessary to operate the Service:
- Account information. When you sign in with Google, the extension receives your Google account email address, display name and profile picture. Today this information is processed locally in your browser to identify your workspace and to label your account inside Markmez; it is stored in your browser, not on our servers. If we introduce a backend in the future (for example, to enable account-based sync or licensing), this same information may be sent to and stored on our servers, and we will update this policy and our Chrome Web Store disclosure before doing so. We never receive your Google password.
- Your content. The boards, pages, bookmarks, notes and settings you create in Markmez are stored locally in your browser (using Chrome's local and sync storage) so the Service can display them back to you and sync them across your devices.
- Payment information. If you purchase a lifetime license, payment is handled by a third-party payment processor. We receive only a transaction confirmation. We do not receive, store or process your credit card number or other payment credentials.
- Usage and technical data. To understand how Markmez is used and improve it, we collect anonymous, aggregated usage analytics through Google Analytics 4. This includes events such as installing the extension, opening a new tab, signing in or continuing as a guest, creating boards and bookmarks, using search, viewing the paywall, starting checkout, completing a purchase, and uninstalling (including an optional reason you may select). We also record anonymous technical error reports to detect and fix problems. This data is tied only to a random, locally generated identifier — it does not include your name, email, account details or the content of your boards and bookmarks, and we do not use it for advertising. We do not show ads or use advertising trackers.
- Weather location. The weather widget is optional and off by default. If you enable it, you type a city name yourself; that city name is sent directly from your browser to a third-party weather API, which returns the matching coordinates and the current forecast. We do not access your device's geographic location, and nothing is sent to or stored on our servers.
2. Chrome extension permissions explained
Markmez requests the following browser permissions. We describe exactly why each is needed:
- storage. Used to save your boards, bookmarks and settings locally in your browser and to sync them across your Chrome profile via Chrome's built-in sync storage.
- unlimitedStorage. Markmez caches website icons (favicons) locally so they load instantly and offline. With a large collection of bookmarks this cache can exceed the standard storage quota, so this permission prevents your data from being lost.
- bookmarks. Requested to allow importing your existing Chrome bookmarks into Markmez boards (optional, user-initiated feature). The import is read-only — we only read your existing bookmarks, never modify them. Once imported, the bookmarks become part of your Markmez content, which is synced across your devices via Chrome's sync storage like the rest of your boards.
- identity. Used exclusively to authenticate you with your Google account using Chrome's built-in OAuth flow. No authentication tokens are sent to our servers.
- activeTab / tabs. Used to read the title and URL of the current page when you save a tab to a board (via the Quick Save button), and to open your bookmarks in new tabs when you click them. We do not log, store or transmit your browsing history.
- search. Used to send a query to your browser's default search engine when you use the built-in search bar on the new tab page.
- favicon. Used to access Chrome's built-in favicon cache so we can display the icon of a site you have already visited.
- Host access to specific services. Markmez does not request access to the websites you browse. It only communicates with a small, fixed set of third-party services needed for its features: a weather API (open-meteo.com) to show the forecast, Google APIs (googleapis.com, accounts.google.com) for optional sign-in, Google's and DuckDuckGo's public icon services (gstatic.com, icons.duckduckgo.com) to load bookmark favicons, and Google Analytics (google-analytics.com) for anonymous usage and error analytics. These requests are made directly from your browser, not via our servers, and nothing is injected into the pages you visit.
To display icons next to your bookmarks, Markmez tries several public favicon sources in order: hardcoded brand icons, the website's own favicon.ico, Google's public favicon service and DuckDuckGo's icon service, and finally Chrome's local favicon cache. Only the address of the bookmarked site (not your identity) is sent to these public services, and resolved icons are then cached locally so they load without further requests.
3. How we use your information
- To provide, maintain and improve the Service.
- To save and sync your boards and bookmarks across your devices via your Chrome profile.
- To process your purchase and provide customer support.
- To communicate with you about important changes, security matters or your account.
4. How your data is stored
Your content (boards, bookmarks, notes and settings) is stored in your browser using Chrome's chrome.storage.local and chrome.storage.sync APIs. When you are signed in, sync storage allows your data to follow you across devices where you are signed in to the same Chrome profile. This sync is managed by Google's Chrome sync infrastructure. Today, Markmez does not operate its own server that stores your content.
If we introduce server-side features in the future (such as account-based sync or licensing), we will apply reasonable technical and organizational measures to protect any data we hold against unauthorized access, loss or misuse, and we will update this policy beforehand. No method of storage or transmission is ever 100% secure.
5. Sharing of information
We do not sell, rent or trade your personal data. We do not show ads. Your data is processed locally in your browser, except for the limited cases below where your browser communicates directly with third-party services:
- Google (authentication & sync). Sign-in uses Google OAuth, and cross-device sync relies on Google's Chrome sync infrastructure.
- Google Analytics. Receives anonymous usage and error events (tied only to a random identifier, never your identity or content) so we can measure and improve how the Service is used.
- Payment processor. Handles purchase transactions securely when you buy a license on our website.
- Favicon services. Google's and DuckDuckGo's public favicon services receive the address of a bookmarked site to return its icon.
- Weather API. Receives the city name you type to return its coordinates and a forecast when you enable the weather widget.
- Hosting provider. Hosts the Markmez website. If we add server-side components in the future, our hosting provider may process related data on our behalf.
These third parties are only permitted to use your data to perform services on our behalf and are not allowed to use it for their own purposes.
6. Your rights and choices
- Export. You can export the data you have added to Markmez at any time from within the extension settings.
- Deletion. Because your data is stored in your browser, you can delete it at any time by clearing it in the extension settings or by uninstalling the extension. If we hold any data about you on our servers in the future, you can request its deletion by contacting us at markmezapp@gmail.com.
- Access. You can ask us what personal data, if any, we hold about you.
- Withdraw consent. You can revoke Markmez's access to your Google account at any time from your Google Account security settings.
7. Data retention
Data you create in Markmez stays in your browser for as long as you keep the extension installed and choose to keep it; you control its retention directly. We do not currently hold your content on our own servers. If we introduce server-side storage in the future, we will retain such data only for as long as your account is active and will remove associated data within 30 days of a deletion request, except where we are required to keep certain records by applicable law.
8. Children
Markmez is not directed to children under 13 years of age, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, please contact us and we will delete it.
9. International users
Your information may be transferred to, stored and processed in a country different from the one in which you reside. The third-party providers we rely on (such as Google, our payment processor and our hosting provider) may process data in various countries. By using the Service, you consent to your information being transferred and processed in this way.
10. Changes to this policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last updated" date at the top of this page and, where appropriate, notify you within the extension or by email.
11. Contact
If you have any questions about this Privacy Policy or your data, please contact us at markmezapp@gmail.com.