Last updated: April 10, 2026
LeafTab is designed around local-first behavior. Most preferences and search interactions stay in your browser unless you explicitly enable a sync or network-based feature.
LeafTab ("we", "us", or "our") respects your privacy. This Privacy Policy explains what data the extension handles, which permissions it may request, and how those permissions are used.
1. Data We Handle
- Stored locally by default: shortcuts, scenario modes, wallpaper settings, search preferences, UI preferences, and local search history are stored in your browser using local extension storage.
- Cloud sync (optional): if you sign in and use sync, LeafTab stores your shortcut backup payload and necessary account metadata on the configured LeafTab backend (such as
leaftab.cc) so your data can sync across devices.
- WebDAV sync (optional): if you enable WebDAV, backup data is sent only to the WebDAV address you configure. LeafTab does not scan your device files; it only reads and writes the backup payload created by the extension.
- Anonymous usage statistics (optional): if you opt in, LeafTab may send shortcut domain names only (for example,
google.com) to help improve icon coverage. This does not include full URLs, page content, browsing history entries, or personal identity data.
- Search queries: your typed query is processed locally for suggestions and shortcuts. A query is sent to your selected search engine or target site only when you explicitly submit a search.
2. Browser Permissions Explained
LeafTab requests some permissions only when you use related features.
search: used to submit searches through the browser's search service when you choose the system search engine option.
permissions: used to request optional browser permissions or site access at runtime, only when you trigger a related feature.
activeTab: used to read the title and URL of your currently active tab so LeafTab can help you quickly add the current page as a shortcut. This is only used when you actively trigger that feature.
identity: used to support Google Sign-In through the browser's identity / OAuth flow. This is only used when you explicitly choose to sign in with Google.
bookmarks (optional): used to let you search and open browser bookmarks directly from the new tab search box.
history (optional): used to let you search, suggest, and open browser history entries from the new tab search box.
tabs (optional): used to let you search, switch, and manage currently open tabs, and to support experiences such as avoiding duplicate LeafTab tabs.
- Host access: used for LeafTab backend requests, wallpaper/weather/icon resources, font loading, GitHub-hosted resources, and user-configured WebDAV sync targets. Access to a custom WebDAV origin is requested on demand when you actually use WebDAV sync.
3. What LeafTab Does Not Do
- It does not sell your data.
- It does not read bookmarks, history, or tabs unless you grant the related optional permission.
- It does not upload your browser history, bookmark contents, or open-tab list to our server for unrelated purposes.
- It does not request browser geolocation permission. Weather features rely on the city you choose or related weather-service responses, not on continuous device location tracking.
4. Third-Party Services
Depending on which features you use, LeafTab may connect to third-party services such as:
- LeafTab backend: authentication, sync, and optional statistics.
- Weather and wallpaper services: for weather data and Bing wallpaper content.
- Icon services: for fetching website favicons used by shortcuts.
- Google Identity / OAuth services: only when you explicitly choose Google Sign-In.
- GitHub Pages / GitHub raw / Google Fonts: for public resources used by the extension or related pages.
- User-configured WebDAV server: only when you enable WebDAV backup or restore.
5. Google Sign-In (Optional)
- Triggered only by you: Google Sign-In is used only after you click a Google login action. LeafTab does not silently sign you in with Google.
- Data used for authentication: Google Sign-In may process basic Google account data returned by Google, such as a stable Google account identifier (
sub), email address, email verification state, and limited profile information needed to complete sign-in and create or recover your LeafTab account.
- Scope principle: the sign-in flow uses Google OpenID Connect scopes such as
openid, email, and profile to complete authentication and account display. LeafTab does not request access to Google Drive, Gmail, Contacts, Calendar, or other Google data unless explicitly documented and approved by you.
- Token handling: Google OAuth / identity tokens are used to verify your sign-in and create a LeafTab session. After verification, LeafTab uses its own session token for the application. LeafTab does not store your Google password.
- Stored account data: if you use Google Sign-In, LeafTab may store the authentication provider, a stable Google account identifier, your LeafTab username, and the account data required for login and sync.
- Self-hosted backend compatibility: if you use a custom/self-hosted backend, Google login availability depends on whether that backend is configured with its own Google OAuth credentials and redirect URI. Without such configuration, Google login may be hidden or disabled while other login/sync methods remain available.
6. Your Controls
- You can choose whether to sign in and use cloud sync.
- You can enable or disable anonymous usage statistics in settings.
- You can choose whether to grant optional permissions such as
bookmarks, history, and tabs.
- You can export, import, back up, or self-host supported parts of your data workflow.
7. Contact
If you have questions about this Privacy Policy, please contact:
Email: mason.life@proton.me
最后更新:2026 年 4 月 10 日
LeafTab 采用本地优先设计。除非您主动开启同步或其他联网功能,否则大多数偏好设置与搜索交互都只保留在浏览器本地。
LeafTab(以下简称“我们”)重视您的隐私。本隐私政策说明扩展会处理哪些数据、可能申请哪些权限,以及这些权限的实际用途。
1. 我们处理的数据
- 默认本地存储: 快捷方式、情景模式、壁纸设置、搜索偏好、界面偏好以及本地搜索历史,默认都存储在浏览器本地的扩展存储中。
- 云端同步(可选): 如果您登录并使用同步功能,LeafTab 会将快捷方式备份数据和必要的账号元数据存储到配置的 LeafTab 后端(例如
leaftab.cc),以便在多设备之间同步。
- WebDAV 同步(可选): 如果您启用 WebDAV,备份数据只会发送到您自己配置的 WebDAV 地址。LeafTab 不会扫描您的本地文件,只会读写扩展生成的备份数据。
- 匿名使用统计(可选): 如果您主动开启,我们可能仅上报快捷方式对应的域名(例如
google.com),用于改进网站图标适配。这不包含完整 URL、页面内容、浏览历史明细或个人身份信息。
- 搜索词: 您输入的搜索内容会先在本地用于建议、快捷方式匹配与结果组织;只有当您主动提交搜索时,查询才会发送到您选定的搜索引擎或目标网站。
2. 浏览器权限说明
LeafTab 的部分权限只会在您实际使用相关功能时按需申请。
search: 当您选择“系统搜索引擎”时,用于通过浏览器搜索服务发起搜索。
permissions: 用于在运行时按需申请可选权限或站点访问权限,仅在您触发相关功能时使用。
activeTab: 用于读取您当前活动标签页的标题和网址,以便 LeafTab 帮助您快速把当前页面添加为快捷方式。该权限仅在您主动触发该功能时使用。
identity: 用于通过浏览器身份认证 / OAuth 流程支持 Google 登录。该权限仅在您明确选择使用 Google 登录时使用。
bookmarks(可选): 用于在新标签页搜索框中直接搜索并打开浏览器书签。
history(可选): 用于在新标签页搜索框中搜索、联想并打开浏览历史记录。
tabs(可选): 用于搜索、切换和管理当前已打开的标签页,以及支持避免重复打开 LeafTab 标签页等体验。
- 站点访问权限: 用于访问 LeafTab 后端、壁纸/天气/图标资源、字体资源、GitHub 托管资源,以及您自行配置的 WebDAV 同步目标。自定义 WebDAV 域名权限只会在您实际使用 WebDAV 同步时按需申请。
3. LeafTab 不会做什么
- 不会出售您的数据。
- 不会在您未授权的情况下读取书签、历史记录或标签页。
- 不会为了与核心功能无关的用途,把您的浏览历史、书签内容或打开中的标签页列表上传到我们的服务器。
- 不会申请浏览器地理位置权限。天气功能依赖您手动选择的城市或相关天气服务返回的数据,而不是持续追踪设备位置。
4. 第三方服务
根据您使用的功能,LeafTab 可能会连接以下类型的第三方服务:
- LeafTab 后端: 用于账号登录、同步和可选统计功能。
- 天气与壁纸服务: 用于获取天气数据和必应壁纸内容。
- 图标服务: 用于获取快捷方式所需的网站图标。
- Google 身份认证 / OAuth 服务: 仅在您主动选择 Google 登录时使用。
- GitHub Pages / GitHub Raw / Google Fonts: 用于扩展或相关页面依赖的公开资源。
- 用户自行配置的 WebDAV 服务器: 仅在您启用 WebDAV 备份或恢复时使用。
5. Google 登录(可选)
- 仅在您主动触发时使用: 只有当您点击 Google 登录操作时,才会发起 Google 身份认证流程;LeafTab 不会在后台静默替您登录 Google。
- 用于认证的数据: Google 登录过程中,LeafTab 可能处理 Google 返回的基础账号信息,例如稳定的 Google 账号标识(
sub)、邮箱地址、邮箱验证状态,以及完成登录和创建或找回 LeafTab 账号所需的有限资料信息。
- 权限范围原则: 登录流程会使用 Google OpenID Connect 的
openid、email、profile 等范围,以完成身份认证和账号展示。除非另行明确说明并征得您同意,LeafTab 不会请求 Google Drive、Gmail、通讯录、日历等额外数据权限。
- 令牌处理: Google OAuth / 身份令牌仅用于校验您的登录并创建 LeafTab 会话;完成校验后,应用会使用 LeafTab 自身的会话令牌。LeafTab 不会保存您的 Google 密码。
- 存储的账号数据: 如果您使用 Google 登录,LeafTab 可能会保存认证提供方、稳定的 Google 账号标识、您的 LeafTab 用户名,以及登录和同步所必需的账号数据。
- 自托管兼容性: 若您使用自定义/自托管后端,Google 登录是否可用取决于该后端是否配置了自己的 Google OAuth 凭据与回调地址;未配置时,Google 登录入口可能隐藏或禁用,但不影响其他登录/同步方式。
6. 您的控制权
- 您可以自行决定是否登录并启用云端同步。
- 您可以在设置中开启或关闭匿名使用统计。
- 您可以自行决定是否授予
bookmarks、history、tabs 等可选权限。
- 您可以导出、导入、备份数据,也可以在支持的场景下自托管后端。
7. 联系方式
如果您对本隐私政策有任何问题,请通过以下方式联系:
邮箱: mason.life@proton.me