1 What Penggu stores
Penggu keeps all of your content — boards, cards, labels, notes, quick tasks, reminders, routines, focus sessions, Worknest statistics (streaks, missions, heatmap history), and preferences — in your browser's local storage using Chrome's storage APIs. This data exists only on your computer and is readable only by the extension itself.
We have no access to it, and no one else does either — unless you explicitly enable optional cloud sync (see section 4).
2 What we don't do
- We do not collect, transmit, or sell personal data.
- We do not use analytics, telemetry, or crash reporting.
- We do not show ads or use advertising trackers.
- We do not require accounts, sign-ups, or logins.
- We do not read the content of webpages you visit.
- We do not monitor your browsing history or activity.
3 Permissions, explained
Chrome requires extensions to declare permissions up front. Here is why each one exists:
- Storage — saves your boards, notes, tasks, and settings on your device.
- Alarms — fires your reminders, routines, and backup nudges at the right time, even when the extension is closed.
- Notifications — shows desktop alerts for due reminders and finished focus sessions.
- Unlimited storage — prevents quota errors so years of notes and tasks are never lost.
- Scripting + Active tab — injects the floating focus timer onto the page you're viewing when you start a session, and lets the web clipper grab the text you selected. It acts only when you explicitly start a timer or use the clipper, and never reads or reports anything else on the page.
- Context menus — powers the right-click "Clip to Penggu" web clipper actions.
- Identity — used only if you connect Google Drive for optional Pro cloud sync. It requests a token limited to your Drive's hidden AppData folder; we never see the token and never request access to your files, contacts, or profile.
- Host permission (all sites) — optional & opt-in — needed so the floating timer can follow you across any webpage and so clipper shortcuts work wherever you're reading. Chrome asks for your consent before it's granted, and the extension never reads or reports page content on its own.
4 Multi-device cloud sync
Penggu offers optional multi-device workspace synchronization:
- Chrome's built-in sync storage — synchronizes compressed workspace data (up to 100KB) through your private Google Chrome profile sync channel. This data is private to your Google Chrome account.
- Google Drive AppData backup (Pro) — provides unlimited cloud backup using your personal Google Drive account. Data is saved strictly into your private, hidden Google Drive application folder.
All sync traffic is client-side and travels directly from your browser to Google's official endpoints over secure HTTPS. Penggu does not operate any intermediate servers, databases, or proxy relays. Your data never touches our infrastructure.
5 Google user data & Google Drive API disclosure
Penggu requests access to the Google Drive API when you choose to connect Google Drive for cloud backup and multi-device synchronization. We adhere strictly to Google's developer and user data policies:
- Specific Google OAuth scope requested: Penggu requests exclusively the
https://www.googleapis.com/auth/drive.appdatascope. - Strictly isolated application data: This permission grants access only to the dedicated, hidden Application Data folder (
appDataFolder) in your personal Google Drive. Penggu does not have access to, cannot read, cannot edit, and cannot delete any of your personal files, spreadsheets, photos, documents, or general folders stored on Google Drive. - How Google data is used: Data accessed via this scope is used solely to save, synchronize, and restore your personal Penggu workspace files (kanban boards, notes, quick tasks, reminders, and settings) across your authorized devices.
- Direct client-side communication: The extension communicates directly with Google's official Drive API endpoints via HTTPS. We do not operate intermediary sync servers. None of your Google user data, OAuth tokens, or workspace contents are ever transmitted to, stored on, or processed by our servers or any third-party infrastructure.
- No selling, sharing, or advertising: We never sell, rent, trade, or transfer Google user data to any third parties, advertising networks, or data brokers. Google user data is never used for serving advertisements, retargeting, analytics, or behavioral tracking.
- No AI or machine learning training: Information obtained through Google APIs is never used to train, retrain, fine-tune, or improve generalized artificial intelligence or machine learning models.
- Data retention & deletion: Your data remains securely in your own Google Drive account for as long as you choose. You can delete your cloud backup directly from the extension under Settings → Sync & Backup, or disconnect Google Drive at any time. You can also permanently revoke Penggu's access at any time by visiting Google Account Permissions.
6 Pro licensing & payments
Upgrading to Penggu Pro is handled by Polar (polar.sh), our payment provider. Purchases happen on Polar's website — we never see or store your card details.
When you activate or periodically re-validate a license key, the extension sends three things to Polar's API: your license key, our organization ID, and a device label (browser name). This is standard license validation; no task, note, or board data is ever included. You can deactivate a device at any time from the extension or Polar's customer portal.
7 Backups and export
When you export a backup, Penggu saves a JSON file through your browser's normal download flow. The file is created on your device and goes wherever you put it. We never receive a copy.
8 If you uninstall
Uninstalling the extension removes its locally stored data, as with any browser extension. If you want to keep your work, export a JSON backup first. If you used optional Drive sync, the copy in your Google Drive's AppData folder remains in your Google account until you delete it.
9 Children's privacy
Penggu is not directed at children under 13, and since no data is collected by default, no data from children is collected either.
10 Changes to this policy
If this policy changes, the updated version will be posted at this URL with a new "last updated" date. This version was prepared for Penggu v2.0.0 and details Google Drive API integration, Chrome Sync, and Pro licensing compliance.
11 Contact
Questions about this policy or the extension? Email [email protected].