Privacy Policy for Glot - Contextual AI Translator

Last Updated: July 21, 2026

Overview

Glot ("the Extension") is committed to protecting your privacy. This Privacy Policy describes in detail what data we collect, how we use it, how we store it, and how we share it when you use our Chrome Extension.

User Consent and When Data Is Sent

Glot does not continuously upload browsing activity. Translation content is processed only after you intentionally request translation, such as by selecting text and using the keyboard shortcut, right-click menu, or translation UI. Account and subscription data is processed only when you sign in, start a trial, refresh entitlement status, or manage a paid plan.

You can use Bring Your Own API Key mode to send translation requests directly from your browser to the AI provider you choose. You can also clear locally stored settings and API keys at any time from the Extension options page or by uninstalling the Extension.

Information We Collect and Process

Depending on how you use the Extension, we may collect or process the following information. "Collect" includes information stored by Glot servers; "process" includes information transmitted in real time only to provide the requested translation.

1. Account Data (collected when you register or sign in)

2. Subscription & Payment Data

3. Translation Content (only when using the built-in hosted translation service)

If you use Bring Your Own API Key mode, translation content is sent directly from your browser to your configured AI service (e.g., DeepSeek, OpenAI, Anthropic, or local Ollama) and does not pass through our servers.

4. Locally Stored Data

The Extension uses chrome.storage to save the following on your local device:

This data is stored in chrome.storage.local on your device and is not synchronized through Chrome Sync. API keys and provider settings are not uploaded to Glot servers. In BYOK mode, the configured API key is sent only to the AI endpoint you configured so that provider can authenticate the translation request.

5. Technical & Diagnostic Data

Data Handling Summary

Data category Collected / processed Stored Shared with
Email address, password, user ID, auth session When you register, sign in, or refresh your session Supabase account and authentication systems; auth tokens in local browser storage. Glot does not store plaintext passwords. Supabase; authentication tokens are also sent to Glot managed services when required for entitlement verification
Subscription status and Stripe customer ID When you start a trial, upgrade, renew, or check entitlement status Supabase subscription records; Stripe billing systems Supabase and Stripe
Selected text and necessary page context Only when you request a translation Not persistently stored by Glot in hosted mode Hosted AI providers via Glot's relay, or your chosen BYOK provider directly from your browser
API keys, provider settings, target language, prompts, UI preferences When you save settings in the Extension Local browser storage on your device; not synchronized through Chrome Sync Not uploaded to Glot servers
Operational logs and diagnostic metadata When hosted translation or account services are used Temporary infrastructure logs for reliability, security, abuse prevention, and debugging Cloudflare and infrastructure providers needed to operate the service

How We Use Your Information

Data Storage

Data Retention

Data Security

We take reasonable technical and organizational measures to protect your personal data against unauthorized access, use, or disclosure:

Despite these measures, no method of internet transmission or electronic storage is 100% secure, and we cannot guarantee absolute security.

Data Sharing

We only share data with third parties as described below. We do not sell or disclose your information for any other purpose.

Children's Privacy

The Glot Extension and its services are not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we may have collected information from a child under 13, please contact us using the information below and we will promptly take steps to delete such information.

Third-Party Service Categories and Current Providers

To provide translation, account, and payment functionality, we use the following third-party services. Each service may process portions of data under its own privacy policy:

Permissions Justification

Chrome Web Store Limited Use Disclosure

Glot's use of information received from Chrome APIs complies with the Chrome Web Store User Data Policy, including the Limited Use requirements. We use user data only to provide and improve user-facing translation features, do not sell it, do not use it for personalized advertising, and do not allow humans to read translation content except where required for security, legal compliance, or with the user's explicit consent.

Your Rights and Controls

Changes to this Policy

We may update this privacy policy from time to time. Any changes will be reflected on this page, with the date at the top updated accordingly.

Contact

If you have any questions about this privacy policy, wish to exercise your data rights, or want to delete your account, please contact the developer via GitHub or the support links provided in the Chrome Web Store.