Privacy Policy

Your privacy matters to us. This policy explains what data we collect, how we use it, and your rights regarding your personal information.

Last updated: February 13, 2026

info 1. Introduction

Peak Productivity ("we", "us", or "our") operates the website peakproductivity.online and publishes Chrome extensions available through the Chrome Web Store. This Privacy Policy describes how we collect, use, store, and protect your personal information when you use our website, extensions, and related services.

By using our services, you agree to the collection and use of information in accordance with this policy. If you do not agree, please discontinue use of our services.


database 2. Data We Collect

2.1 Information You Provide

  • Email address -- collected when you voluntarily subscribe through our opt-in forms on the website or within our extensions. We never collect your email without explicit consent.
  • Payment information -- when you purchase a Pro subscription, payment details are collected and processed directly by Stripe. We never store your credit card number, CVV, or full card details on our servers.
  • Support inquiries -- if you contact us via email, we retain the content of your message and your email address to respond and improve our services.

2.2 Information Collected Automatically

  • Extension usage analytics -- we collect anonymous, aggregated usage data such as feature usage counts, extension version, and browser language. This data does not include browsing history, page content, or personally identifiable information.
  • Website analytics -- we use privacy-focused analytics to understand visitor traffic, page views, and referral sources. This data is aggregated and does not personally identify you.

2.3 Information We Do NOT Collect

  • We do not collect or access your browsing history.
  • We do not read or transmit the content of web pages you visit.
  • We do not sell, rent, or trade your personal data to third parties.

extension 3. Chrome Extension Permissions & Data Handling

Our Chrome extensions request only the minimum permissions necessary to function. Each extension's required permissions are disclosed on its Chrome Web Store listing before installation.

How permissions are used

  • Storage -- used to save your extension settings and preferences locally on your device. This data never leaves your browser unless you explicitly enable cloud sync.
  • Active Tab -- used only when you explicitly interact with the extension (e.g., clicking the extension icon). We access only the current tab and only when triggered by you.
  • Alarms -- used for scheduling features like the Pomodoro timer or auto-refresh intervals. No data is transmitted.
  • Downloads -- used to save files you explicitly request (e.g., images, PDFs, screenshots). We do not initiate downloads without your action.

All data processing within our extensions happens locally on your device. We employ a privacy-by-design approach: if a feature can work without sending data to a server, it will.


credit_card 4. Payment Processing

We use Stripe as our payment processor for all Pro subscription purchases. When you make a payment:

  • Your payment information (credit card number, expiration date, CVC) is collected and processed directly by Stripe. This data is never sent to or stored on our servers.
  • Stripe is a PCI-DSS Level 1 certified payment processor, the highest level of security certification in the payments industry.
  • We receive only a limited set of information from Stripe: the last four digits of your card, card brand, expiration date, and transaction status. This is used solely to display your subscription status and billing history.
  • For more information, please refer to Stripe's Privacy Policy.

mail 5. Email Marketing

If you subscribe to our mailing list through an opt-in form, we use Sendy (a self-hosted email platform) powered by Amazon SES (Simple Email Service) to send you emails.

  • We only send emails to addresses that have been explicitly opted in. We never purchase email lists or add addresses without consent.
  • Emails may include product updates, new extension announcements, tips, and occasional promotional offers.
  • Each email contains an unsubscribe link at the bottom. You can opt out at any time with a single click.
  • We may track email open rates and click-through rates in aggregate to improve the quality and relevance of our communications.
  • Your email address is stored on our self-hosted Sendy instance and is transmitted through Amazon SES for delivery. Amazon SES processes emails in accordance with the AWS Privacy Policy.

cookie 6. Cookies & Local Storage

Website

  • Theme preference -- we use localStorage to remember your light/dark mode preference. This data stays in your browser and is never transmitted.
  • Analytics cookies -- minimal cookies may be set by our analytics provider to distinguish unique visitors. These do not contain personal information.

Chrome Extensions

  • Our extensions use Chrome's chrome.storage.local and chrome.storage.sync APIs to save your settings and preferences.
  • Local storage data remains on your device.
  • Sync storage data is synced across your Chrome browsers through your Google account, governed by Google's own privacy practices.
  • We do not use cookies within our extensions.

delete 7. Data Retention & Deletion

  • Email addresses -- retained for as long as you remain subscribed to our mailing list. Upon unsubscribing, your email is removed from our active mailing lists. We may retain a hashed record for suppression purposes to ensure we do not re-add you.
  • Payment records -- transaction records are retained as required by applicable tax and accounting laws (typically up to 7 years). Stripe retains payment data according to their own retention policies.
  • Extension data -- all extension data stored locally on your device is under your control. Uninstalling an extension removes all locally stored data. You can also clear extension data through your browser settings at any time.
  • Analytics data -- aggregated analytics data is retained indefinitely but contains no personally identifiable information.
  • Support correspondence -- retained for up to 2 years after your last interaction, then deleted.

To request deletion of your data, contact us at peakproductivity@regios.org. We will process your request within 30 days.


gavel 8. GDPR Compliance

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR):

visibility

Right to Access

Request a copy of the personal data we hold about you.

edit

Right to Rectification

Request correction of inaccurate or incomplete personal data.

delete_forever

Right to Erasure

Request deletion of your personal data, subject to legal retention requirements.

download

Right to Portability

Receive your data in a structured, machine-readable format.

block

Right to Restrict Processing

Request limitation on how we process your personal data.

do_not_disturb

Right to Object

Object to the processing of your personal data for specific purposes.

Our legal basis for processing your data is:

  • Consent -- for email marketing and optional analytics. You may withdraw consent at any time.
  • Contractual necessity -- for processing payments and delivering Pro subscription features.
  • Legitimate interest -- for improving our services, preventing fraud, and ensuring security.

To exercise any of these rights, contact us at peakproductivity@regios.org. We will respond within 30 days.


share 9. Third-Party Services

We use the following third-party services that may process your data:

Service Purpose Data Shared
Stripe Payment processing Payment details (card info, billing address)
Amazon SES Email delivery Email address
Sendy Email list management (self-hosted) Email address
Google Chrome Web Store Extension distribution Chrome sync data (if enabled)

We do not sell your personal data to any third party. Data is shared with the services above only to the extent necessary to provide our services.


child_care 10. Children's Privacy

Our services are not directed to individuals under the age of 16. We do not knowingly collect personal information from children. If we become aware that we have inadvertently collected data from a child under 16, we will take steps to delete that information promptly.


history 11. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or applicable laws. When we make significant changes, we will update the "Last updated" date at the top of this page. For material changes, we may also notify you via email if you are subscribed to our mailing list.

We encourage you to review this page periodically to stay informed about how we protect your data.


contact_mail 12. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or the handling of your data, please contact us:

We aim to respond to all privacy-related inquiries within 30 days.