Privacy Policy
last updated · July 21, 2026
Cronvoy is a browser extension that lets an AI model you choose operate your browser, plus an optional account for scheduling and run history. This policy explains what we store, what stays on your device, and what never reaches us.
What stays on your device
- Your OpenRouter API key. Stored in your browser's local extension storage. It is sent only to OpenRouter to run the models you select. It is never transmitted to Cronvoy's servers, and we cannot see it.
- Your browsing. Cronvoy does not track, log, or transmit your ordinary browsing. The agent only reads pages during a run you started or scheduled.
- Model traffic. During a run, page-derived text (and screenshots, if vision is enabled) is sent to OpenRouter under your own key and their privacy terms. We are not in that path.
What we store when you create an account
Accounts and data live in Google Firebase (project region: US). Stored under your user ID, readable only by your authenticated account:
- Account: your email address and authentication credentials (managed by Firebase Authentication; we never see your password).
- Scheduled tasks: the prompt, cadence, timezone, and run times you configure.
- Run history: transcripts of runs — the steps taken, page-derived text the agent worked with, and its summaries.
- Dedup memory: identifiers (such as URLs) of items the agent has already surfaced, so scheduled runs don't repeat themselves.
What we don't do
- No selling or sharing of your data. Ever.
- No advertising, no third-party analytics or tracking pixels on the extension.
- No reading your data for any purpose other than operating the service.
Deleting your data
Deleting tasks and runs from the dashboard deletes them permanently. To delete your entire account and all stored data, email hello@cronvoy.com from your account address and we'll remove it.
Changes
If this policy changes materially, we'll note it here with a new date. Questions: hello@cronvoy.com.