日本語
1. 本ポリシーについて
本プライバシーポリシーは、Chrome拡張機能「Privacy blur」(以下「本拡張機能」)が利用者データをどのように処理、保存、利用、共有するかを説明します。
本拡張機能の主な目的は、離席または無操作時にWebページを視覚的に覆い、画面上の情報を周囲から見えにくくすることです。
2. 端末内で処理または保存する情報
本拡張機能は、機能提供のために次の情報を利用者の端末内で処理またはChromeのローカルストレージへ保存します。
- 利用者設定: 表示言語、自動保護条件、待機時間、保護スタイル、色、ぼかし強度、表示メッセージ、スケジュール、一時停止、解除範囲、その他の設定
- サイト情報: 現在のWebサイトのドメイン、利用者が登録した除外サイトのドメイン、サイト別要素マスクのドメイン
- Webページ情報: 保護表示と要素マスクを適用するためのページDOM、利用者が選択した要素のCSSセレクタおよび最大100文字の表示ラベル
- 操作状態: 無操作時間を判定するためのポインター、クリック、キーボード、ホイール、タッチ、スクロール、フォーカス、タブ表示状態等のイベント発生情報。本拡張機能は押されたキーの内容やフォーム入力値を保存しません
- 利用者が指定したコンテンツ: 保護画面のメッセージおよび任意で設定したローカル背景画像
- 解除パスワード情報: 任意の解除パスワードから生成したランダムソルト付きPBKDF2-SHA-256ハッシュ、反復回数、パスワード文字数、失敗回数、入力制限期限、再入力猶予期限。本拡張機能は平文の解除パスワードを保存しません
- 動作状態: 保護中かどうか、保護理由、一時停止期限等
要素マスクを保存すると、選択した要素の文字列の一部が表示ラベルとして端末内に保存される場合があります。保存したくない機密文字列を含む要素は選択しないでください。
3. 情報の利用目的
上記の情報は、次の機能を提供するためだけに利用します。
- 自動保護条件とスケジュールの判定
- Webページへの保護オーバーレイの表示と解除
- サイト除外と要素マスクの適用
- 利用者が選択した設定の保持
- 任意の解除パスワードの確認、失敗回数制限、再入力猶予の管理
- 拡張機能のON/OFF、一時停止、タブ間の保護状態の同期
4. 外部送信、共有、販売
本拡張機能は、上記情報を開発者または第三者のサーバーへ送信しません。
本拡張機能は次の機能を使用しません。
- 広告
- アクセス解析
- トラッキング
- 外部API
- 外部サーバー
- 遠隔コード
開発者は、本拡張機能が処理する情報を第三者へ共有、販売、貸与せず、広告、信用評価、融資、その他の目的に利用しません。開発者または第三者の担当者が利用者データを閲覧する仕組みもありません。
5. 権限
本拡張機能は、機能提供のためにChromeのストレージ、アイドル検知、アラーム、コンテキストメニュー、スクリプト適用、および対応Webページへのアクセス権限を使用します。Webページへのアクセスは、保護表示、自動保護条件の検知、サイト除外、要素マスク、および既存タブへの保護コード適用に限定して使用します。
Chromeの設定画面、新しいタブ、Chrome Web Storeなど、Chromeが拡張機能の実行を許可しないページにはアクセスできません。
6. 保存期間と削除方法
設定と状態は、利用者が変更、リセット、削除するまでChromeのローカルストレージに保存されます。
- 除外サイトと要素マスクは、詳細設定から個別に削除できます
- カスタム背景画像は、詳細設定から削除できます
- 解除パスワードは、パスワード機能のOFFまたはパスワードリセットで削除できます
- 全設定リセットにより、保存した設定と状態を初期化できます
- 本拡張機能をアンインストールすると、Chromeが管理する本拡張機能のローカルデータは削除されます
7. セキュリティ
解除パスワードは平文で保存せず、ランダムソルト付きPBKDF2-SHA-256ハッシュとして端末内に保存します。ただし、本拡張機能はOSの画面ロックや端末暗号化の代替ではありません。Chromeプロフィールまたは端末へアクセスできる第三者に対する完全な防御を保証するものではありません。
8. 変更
機能、権限、データ処理方法、法的要件が変わる場合、本ポリシーを更新し、最終更新日を変更します。重要な変更がある場合は、Chrome Web Storeの掲載情報または本拡張機能内で必要な案内を行います。
お問い合わせは、公開している GitHub Issues または公開メールアドレスをご利用ください。 GitHub Issues: https://github.com/takahiro0228/privacy-policy/issues
English
1. About this policy
This Privacy Policy explains how the Chrome extension “Privacy blur” (the “Extension”) processes, stores, uses, and shares user data.
The Extension's single purpose is to visually cover webpages when the user steps away or becomes inactive, reducing casual exposure of on-screen information.
2. Information processed or stored locally
To provide its features, the Extension processes the following information on the user's device or stores it in Chrome local storage:
- User settings: display language, protection triggers, timers, protection style, colors, blur strength, display message, schedule, pause duration, unlock scope, and related preferences
- Site information: the current website domain, domains the user adds to the exclusion list, and domains associated with site-specific element masks
- Webpage information: the page DOM used to display protection and apply element masks, plus the CSS selector and a display label of up to 100 characters for an element explicitly selected by the user
- Activity state: the occurrence of pointer, click, keyboard, wheel, touch, scroll, focus, and tab-visibility events used to determine inactivity. The Extension does not store the keys pressed or form input values
- User-provided content: the protection-screen message and an optional local background image
- Unlock password information: a PBKDF2-SHA-256 hash generated with a random salt, iteration count, password length, failed-attempt count, lockout deadline, and re-entry grace deadline. The Extension does not store the raw unlock password
- Operational state: whether protection is active, the protection reason, pause deadline, and related state
When the user saves an element mask, part of the selected element's text may be stored locally as its display label. Users should not select an element containing confidential text that they do not want saved locally.
3. How information is used
The information above is used only to provide these user-facing features:
- Evaluate automatic protection triggers and schedules
- Display and remove the webpage protection overlay
- Apply website exclusions and element masks
- Retain settings selected by the user
- Verify the optional unlock password and manage failed-attempt limits and re-entry grace periods
- Manage extension on/off state, pauses, and protection state across tabs
4. External transmission, sharing, and sale
The Extension does not transmit the information described above to the developer's servers or to third-party servers.
The Extension does not use:
- Advertising
- Analytics
- Tracking
- External APIs
- External servers
- Remote code
The developer does not share, sell, or rent data processed by the Extension and does not use it for advertising, credit assessment, lending, or unrelated purposes. There is no mechanism that allows the developer or third-party personnel to view user data processed by the Extension.
5. Permissions
The Extension uses Chrome permissions for local storage, idle detection, alarms, context menus, script injection, and access to supported webpages. Webpage access is limited to displaying protection, detecting enabled triggers, applying website exclusions and element masks, and applying the packaged protection code to already-open tabs.
The Extension cannot access Chrome internal pages, the New Tab page, the Chrome Web Store, or other pages on which Chrome does not allow extensions to run.
6. Retention and deletion
Settings and operational state remain in Chrome local storage until the user changes, resets, or deletes them.
- Excluded websites and element masks can be deleted from Advanced settings
- A custom background image can be removed from Advanced settings
- Unlock password data can be deleted by turning off the password feature or using password reset
- Reset all settings returns stored settings and state to their defaults
- Uninstalling the Extension removes the Extension's local data managed by Chrome
7. Security
The raw unlock password is not stored. It is stored locally as a PBKDF2-SHA-256 hash with a random salt. However, the Extension is not a substitute for operating-system screen locking or device encryption and cannot guarantee complete protection against a person who can access the user's Chrome profile or device.
8. Changes
If the Extension's features, permissions, data practices, or legal requirements change, this policy will be updated and the “Last updated” date will be revised. Material changes will be communicated where required through the Chrome Web Store listing or the Extension interface.
For inquiries, please contact through the public GitHub Issues page or the public contact email. GitHub Issues: https://github.com/takahiro0228/privacy-policy/issues