What Sitation collects
- Account information: your name, email address, and securely hashed password.
- Authentication information: a private API token used to connect your signed-in account to the extension and hashed, time-limited tokens used for password recovery.
- Website context: the page URL and title plus limited information about the element you intentionally select, such as its text, tag, selector, and nearby text.
- Your content: project names, comments, replies, comment status, pin color, and anchor position.
- Local settings: selected project, display name, view mode, and comment mode stored by Chrome on your device.
Why it is collected
Sitation uses this information only to create your account, authenticate the extension, attach comments to the webpage elements you choose, reload those comments on the correct pages, and operate your projects. Sitation does not use browsing data for advertising, credit decisions, or unrelated profiling.
When the extension reads a page
The extension runs on webpages so it can show existing pins and let you select an element for a new comment. It sends page and element context to Sitation only when needed to retrieve comments for the active project or when you intentionally create or move a comment.
Storage and security
Account, project, and comment data is stored in Sitation’s hosted database. Authentication and local preferences are also stored in your browser. Data is encrypted in transit using HTTPS. Passwords are stored as hashes rather than readable passwords. You should keep your API token private because it grants access to your projects.
Service providers and sharing
Sitation uses infrastructure providers, including Vercel for application hosting, Neon for database hosting, and Resend for transactional password reset emails, to process data on Sitation’s behalf. Resend receives the destination email address and reset-email contents for delivery. Data is not sold, rented, or shared with advertisers. It may be disclosed when required by law, to protect users and the service, or during a business transfer with appropriate safeguards.
Retention and deletion
Account, project, and comment data is kept while your account is active or as needed to provide Sitation. Logging out removes the extension’s locally stored authentication and settings. You can permanently delete your account from the account page; this deletes the account, its projects, comments, replies, and extension access. Limited backups or security records may remain temporarily before routine deletion.
Your choices
You can stop page access by disabling or uninstalling the extension. You can delete resolved root comments in Sitation; their replies are deleted with them. You can delete your complete account from the account page or contact support if you cannot sign in.
Children
Sitation is not directed to children under 13, and it does not knowingly collect their personal information.
Changes and contact
Material changes will be posted on this page with a revised effective date. Questions or privacy requests can be submitted on the Sitation support page.