This policy applies to the Plumbary Tasks Bridge Chrome extension (“the Extension”).
The Extension is a device bridge for Plumbary Tasks. When you are signed in and connected, a Plumbary Tasks agent may ask it to open a URL in a tab, read visible text from a tab (title, URL, and a capped excerpt) for snapshots, or (in a future release) list/read/write files only in folders you explicitly grant.
The agent loop runs on Plumbary’s servers. The Extension only executes commands allowed by you and your Task autonomy settings.
On your device (Chrome extension storage):
We do not sell this data. Tokens leave your browser only as Authorization headers to the API base you configured.
When connected, the Extension long-polls your Plumbary API (/api/device/bridge) and may POST command results. That traffic uses your Plumbary session and follows your workspace’s Plumbary terms. Tab snapshot text is sent only as a tool result for a Task you initiated (or an authorized agent acting for you), while the Extension is connected.
| Permission | Why |
|---|---|
storage | Save API base, token, and options |
alarms | Keep the background poll alive |
tabs | Open URLs and identify the active tab |
scripting | Read visible page text for snapshots |
| Host access to Plumbary API hosts | Reach /api/device/bridge |
Extension-local settings remain until you clear them or uninstall. Server-side Task data follows your workspace retention practices.
We may update this policy; the date above will change. Questions or deletion requests: sb@spej.ai.