WhatTab

Privacy Policy

Last updated: 13 August 2026

WhatTab is a Chrome extension that saves your open browser tabs into named workspaces so you can close them, switch projects, and get them back later.

The short version: your tabs stay on your device unless you deliberately turn on a feature that sends them somewhere. WhatTab does not require an account, does not sell your data, and does not track your browsing.

What WhatTab stores on your device

This local data never leaves your device unless one of the two features below is used. You can export all of it at any time as JSON, CSV, or OneTab format, and delete it by removing the extension.

What WhatTab does not do

When data leaves your device

Exactly two cases.

1. Cross-device sync — only if you create an account

WhatTab works fully without an account. If you sign in — with Google, or with an email address and password — your workspaces and saved tabs are stored on our backend, hosted by Supabase, so they sync between your devices. WhatTab checks for changes about every five minutes while running.

If you never sign in, nothing is synced and nothing is stored on our servers.

An account also lets us associate your plan with you, apply fair usage limits to AI features, and connect feedback you send to your account.

2. Magic AI Group — only when you run it

Magic AI Group looks at the tabs open in your window and suggests how to group them. When you run it:

Page contents are never sent — only titles, URLs, and workspace names. The extension never contacts Google directly and does not contain a Google API key. If you never run Magic AI Group, none of your tab data is ever transmitted for this purpose.

Because we use the paid Gemini API, Google does not use this data to train or improve its models. It is used only to generate your grouping suggestions and return them to you.

Feedback

If you send feedback through the extension, we receive the message you wrote. Feedback can be sent anonymously; if you are signed in, it is linked to your account so we can reply.

Permissions, and why WhatTab asks for them

PermissionWhy
tabsTo read titles, URLs, and favicons of your open tabs, and to open and close them when you save or restore a workspace. This is the core function.
storageTo keep your workspaces, trash, snapshots, and settings in your browser.
identityOnly to launch Google sign-in, if you choose it. Email/password sign-in does not use this permission.
alarmsOnly to schedule the periodic check for cross-device sync.
https://*.supabase.co/*To reach our backend for sync and Magic AI Group. This is the only website access WhatTab requests.

How long data is kept

On your device: until you delete it.

On our servers (only if you have an account): synced workspaces and archives have no automatic expiry — they remain while your account exists, unless you delete the workspace or item yourself.

Trash: items are kept 30 days on the free plan and 90 days on Pro. Cleanup runs when WhatTab next opens or syncs, so an expired item may persist a little past its deadline before it is removed.

When a user account is deleted, its workspaces, archives, Trash, and profile records are permanently deleted — not hidden or soft-deleted.

Deleting your data

Local data: remove the extension, or delete workspaces individually. This always works and needs no account.

Your account and synced data: to delete your account and everything synced with it, email us at support@whattab.com. We will delete your account and all associated data within 30 days and confirm when it is done.

Server logs

Our Magic AI service does not log your tab titles, URLs, or the suggestions returned. Our hosting provider records standard request metadata, and failed requests record error details that do not include your tab data. These logs are retained for 24 hours.

This website

The WhatTab website (whattab.com) uses Cloudflare Web Analytics to count page views and referrers. It sets no cookies, does not fingerprint your browser, and cannot track you across other sites.

If you join the beta waitlist, we store the email address you give us — with Resend, our email provider — and use it only to tell you when the beta opens and to send occasional updates about WhatTab's progress, never more than once a month. We do not sell or share it. Every email includes a one-click unsubscribe, and you can ask us to remove you at any time at support@whattab.com.

Children

WhatTab is not directed at children under 13 and we do not knowingly collect their data.

Changes to this policy

If this policy changes materially, we will update the date above and note the change here.

Contact

Questions about privacy, or requests to access or delete your data: support@whattab.com

WhatTab is made by an independent developer based in the United States.