Skip to content

Instantly share code, notes, and snippets.

@Eroe1
Last active March 18, 2026 19:40
Show Gist options
  • Select an option

  • Save Eroe1/d9287870cba0b207bc9c329f10f2e2ae to your computer and use it in GitHub Desktop.

Select an option

Save Eroe1/d9287870cba0b207bc9c329f10f2e2ae to your computer and use it in GitHub Desktop.
UnthoughtOf Privacy Policy

Privacy Policy

Effective date: March 18, 2025

Unthoughtof ("we," "us," or "our") provides the Unthoughtof — Monetization Intelligence browser extension. This policy describes how we collect, use, and protect your information when you use the extension.


1. Data Collection

1.1 Website Analysis (Only When You Click)

When you click the Unthoughtof icon on a webpage, we collect technical information that is visible in the page's structure and scripts, such as:

  • Technologies used (e.g., WordPress, Shopify, React)
  • Advertising and analytics scripts (e.g., Google AdSense, analytics tools)
  • Affiliate and creator links (e.g., Patreon, Substack)
  • Whether the page has login, search, cart, pricing, or similar features
  • Basic performance metrics (e.g., load timing, number of requests)
  • Accessibility-related metrics (e.g., images without alt text)

We only use the site's origin (e.g., https://example.com). We do not use full URLs, paths, or any text or content from the page. This collection happens only when you click the icon; we do not scan or collect data in the background as you browse.

1.2 Email Address

We may ask for your email after you have used the extension a few times so you can keep using it for free. Providing your email is optional. We may also receive your email from Stripe if you buy a business plan. We store your email, how we received it (extension prompt or payment), the domain you were analyzing when you provided it (if applicable), and whether you agreed to marketing emails.

1.3 Idea Feedback

When you like, dislike, or ask to improve or replace an idea, we store the domain, the idea, the action you took, any feedback text you entered, and the resulting idea (if we generate one).

1.4 IP Address

Our servers receive your IP address with each request. We use it for rate limiting and abuse prevention. Rate-limit logs are deleted after a short period. For idea feedback (e.g., likes, improvements), we may store your IP with the feedback for limits and deduplication.

1.5 Payment Information

Payments are handled by Stripe. We do not see or store your card number or other payment details. We only receive and store a Stripe session ID and plan ID so we can confirm your purchase and deliver your business plan.

1.6 Data on Your Device

The extension stores data locally in your browser (e.g., cached results, liked ideas, preferences, your email, purchased plans). This stays on your device unless you trigger a sync (such as restoring plans). We do not continuously upload this local data.


2. Data Usage

We use the information we collect to:

  • Run the analysis and show you monetization insights and business ideas.
  • Cache results so repeat visits to the same site are faster.
  • Show the Opportunity Radar badge when you visit a domain we have already analyzed. We only look up the site's origin in our cache; we do not read page content.
  • Generate, store, and restore your purchased business plans.
  • Use your idea feedback (including improvements) to improve ideas for everyone, when our systems approve it.
  • Send occasional product updates if you provided your email and agreed to marketing.
  • Enforce rate limits and prevent abuse.
  • Improve our service using aggregated, non-personal data.

3. Third-Party Services

We do not sell your personal information.

We share data with the following providers, who process it on our behalf:

Supabase

Hosts our databases and server logic in the United States. Stores site origins, technical signals, emails, idea feedback, business plans, and rate-limit data under our instructions.

Google (Gemini API)

Generates AI-powered insights and business ideas. We send only the site origin and a summarized set of technical signals (e.g., tech stack, ads, monetization signals). We do not send raw data-lake records to Google.

Stripe

Processes payments for business plans. Receives the plan identifier and idea title in checkout metadata. We only receive session and plan identifiers to verify purchases.

We may also disclose information if required by law or to protect rights, safety, or security.


4. Data Storage and Region

Our servers and databases are in the United States. If you use the extension from another country, your information will be transferred to and processed in the United States. By using the extension, you consent to that transfer.


5. Data Retention

Data Type Retention
Technical signals (data lake) 90 days, then removed automatically
AI-generated insights 180 days, then removed automatically
Rate-limit logs A few hours, then removed automatically
Email addresses Kept until you request deletion
Idea feedback Kept until you request deletion
Payment records and plans Kept until you request deletion
Local browser data Managed by TTL (7–90 days); cleared on uninstall

6. Security

We use HTTPS for all traffic between the extension and our servers. Access to databases is restricted using row-level security policies; sensitive data is only accessible to our backend, not to the extension directly. We apply rate limits on all API endpoints, validate and length-limit all user input, and take reasonable steps to protect your data.


7. Your Choices and Rights

  • Uninstall: Uninstalling the extension removes its local data from your device.
  • Email and account data: To delete your email or other data we hold about you, contact us at contact@unthoughtof.com. We will process requests within a reasonable time (within 30 days where required by law).
  • Marketing opt-out: You can opt out of emails using the link in any message or by contacting us.
  • Radar badge: You can turn off the Opportunity Flame in the extension so we do not look up the current tab's origin for the badge.

If you are in the EEA, UK, or California, you may have additional rights (e.g., access, correction, deletion, portability). Contact us at contact@unthoughtof.com to exercise them.


8. Children's Privacy

The extension is not intended for anyone under 13 (or 16 in the EEA). We do not knowingly collect personal information from children. If we learn we have done so, we will delete it.


9. Changes to This Policy

We may update this policy from time to time. The effective date at the top will change when we do. Continued use of the extension after an update means you accept the revised policy.


10. Contact

Unthoughtof Email: contact@unthoughtof.com Web: https://unthoughtof.com

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment