01

EFFECTIVE 2026-08-04

自选助手浏览器扩展隐私政策

“自选助手”在用户打开扩展弹窗时检查当前活动页,以便显示页面预览和可用操作;收藏、订阅或扫描等后续动作才会保存或发送相应数据。扩展只把用户明确选择的内容交给其自己设备上的“自选”应用,不运营云端账号服务,不出售数据,也不用于广告、画像或分析。

处理的数据与触发时机

存储、传输与共享

配置、队列和 Bilibili 扫描快照保存在浏览器的 storage.local 中。连接成功后,数据只通过 HTTP loopback 发送到同一台设备上由用户运行的“自选”网站或 Mac 应用;安装版使用应用每次启动重新生成的短期会话,Docker / 网页模式使用可选配对码,请求明确省略浏览器凭据。扩展不会把这些数据发送给项目开发者、广告商、分析服务或其他第三方。

我们不出售、出租或交易任何用户数据。我们不读取或保存密码、Cookie、访问令牌、完整浏览历史或后台访问的其他标签页,也不使用远程托管代码。

保留与删除

成功交给本地应用的队列项目会从扩展队列删除;未送达项目保留到再次投递、用户确认删除或卸载扩展。连接配置保留到用户修改、清除扩展数据或卸载扩展。关注扫描快照保留在本机,用于下一次扫描时显示新增与减少;开始新扫描会更新它。用户可以从弹窗导出待处理队列,并可在浏览器扩展管理页清除数据或卸载扩展。

权限用途

Chrome Web Store Limited Use

自选助手对从 Chrome APIs 获得的信息的使用遵守 Chrome Web Store User Data Policy(包括 Limited Use 要求):数据只用于用户可见的收藏、订阅和导入功能,不用于广告、信用评估或与单一用途无关的转移,也不允许人工读取。

联系我们

隐私问题、数据删除或安全报告请通过 项目 GitHub Issues 联系。政策发生实质变化时,本页会更新生效日期,并在扩展发布资料中披露。


English summary

When the user opens the extension popup, Our Choice Assistant inspects the active page URL, title, public metadata, up to 2,000 characters of selected text, and visible public Bilibili account IDs, names, avatars, and profile URLs so it can render the preview and determine available actions. These inspection results remain temporary until the user chooses to save or subscribe; Bilibili scan results are stored only after the user starts a scan and are sent only after completion. Connection settings, the pairing code, pending items, and scan snapshots stay in the browser’s local extension storage.

Data is sent only to an explicit port from 1 through 65535 on http://localhost:<port> or http://127.0.0.1:<port> (default 3000), where the user runs their own Our Choice companion app. We do not sell data, serve ads, run analytics, share data with third parties, read cookies or passwords, collect full browsing history, or execute remotely hosted code. Delivered queue items are removed; remaining local data can be cleared from the browser’s extension settings or by uninstalling the extension.