Privacy
Clear handling, without hidden promises.
This summary covers the public website, the private member workspace, and extension delivery.
- Public site
- No account required
- Advertising
- No advertising cookies
- Member access
- Server-validated sessions
Release information and downloads
The public site serves the current approved extension package through its own cacheable download routes. Private repository credentials are not sent to the browser. Hosting providers may retain ordinary request logs according to their platform settings.
Individual identity and access
The workspace stores a one-way password hash and a signed, HTTP-only session cookie. It uses membership and tool-grant records to show only the tools approved for the signed-in member. Provider credentials and signing secrets are not exposed to client JavaScript.
Browser permissions
The packaged manifest describes the provider and control-plane permissions the extension requests. Review those permissions in the browser extension details view before installation. Device approval can be revoked by a workspace administrator.
Questions and requests
Contact Digicoan for access, device revocation, installation, or privacy questions.