LogoDESIGN.md Style Generator

Privacy Policy

How we collect, handle, and safeguard your data inside the DESIGN.md Style Generator Chrome Extension.

Last updated: June 18, 2026
Section 1

Introduction

Orbitex AIO ("we," "our," or "us") is committed to protecting the privacy of users of the DESIGN.md Style Generator Chrome Extension ("Extension"). This Privacy Policy describes how we handle information in connection with the Extension, how we respect user privacy, and how we comply with Chrome Web Store User Data Policies.

By installing and using the Extension, you consent to the data practices described in this policy.

Section 2

Data Collection & Zero-Harvester Guarantee

We believe in a strict zero-data-harvesting policy. The Extension is designed to perform all styles and tokens extraction workflows locally on your device:

  • No Transmitted Content: The Extension does not collect, store, or transmit the source code, page DOM structure, or specific design layout metrics scanned from websites to any external servers. All token extractions are processed purely client-side.
  • Profile Identity (Optional Sync): When you authenticate or open the pricing/settings page, the Extension accesses your Chrome Profile Identity via `chrome.identity.getProfileUserInfo` to retrieve your email address. This is used solely to link your purchase and verify active subscription states.
Section 3

Chrome Extension Permissions Declarations

To perform its functions, the Extension requires specific API permissions. We follow the principle of least privilege:

  • activeTab: Used to read stylesheets and computed CSS parameters of the current active tab only when you explicitly trigger a style scan. We do not inspect background traffic or other tabs.
  • scripting: Used to run local, sandboxed script procedures to extract design properties (such as font family stacks, background colors, padding values, and margin scales) directly on the page.
  • downloads: Used to download your generated files (such as DESIGN.md, SKILL.md, tailwind.config.js, or CSS stylesheets) directly to your local file system when you click the export button.
  • storage: Used to persist your custom configuration choices, style refiner settings, and local scan history caches locally on your device.
  • identity & identity.email: Accesses Chrome's OAuth system to fetch your Google profile email address, which is used solely to verify active purchases, license keys, and subscription plan tiers.
Section 4

Data Retention and Security

All extracted tokens are cached in the browser's local sandbox storage. You can wipe this data instantly at any time by clearing the extension cache or uninstalling the Extension.

Account verification details (email addresses and payment webhook receipts) are saved securely using encrypted cloud database structures on Cloudflare. No passwords or financial credentials are ever stored by Orbitex AIO.

Section 5

Third-Party Services & Webhook Posts

The Extension contains an optional feature that allows you to post theme tokens directly to a custom Webhook endpoint. If you configure a webhook URL, the token payloads will be posted to that specific target. You are responsible for ensuring the security of your target endpoints.

Payments are securely handled by Lemon Squeezy, our merchant of record. Please refer to Lemon Squeezy's privacy policy for questions regarding payment billing cards.

Section 6

Contact

For any questions or data requests regarding the DESIGN.md Style Generator Chrome Extension, please contact us on our contact page.

Have questions?

We're here to help. Reach out to our team for any concerns.