隐私政策
ChatGPT 工具箱是一款在用户浏览器中运行的本地会话整理扩展。本政策说明本地目录、备份、批量移动和用户确认的永久删除会处理哪些数据。
扩展处理的数据
扩展仅在 chatgpt.com 运行,并在本地处理:
- 用户创建的目录名称、层级、顺序和展开状态;旧版备份可能保留一个不再展示或编辑的颜色字段。
- 侧边栏已经显示的会话标题、链接和标识,用于目录展示、一对一绑定和用户选择的批量操作。
- 页面中可见的当前账户/工作区资料标记,仅在内存中计算匿名本地 scope 哈希;原始标记不会写入存储或日志。
- 当前 ChatGPT 会话响应中的访问令牌,用于每天最多一次的只读失效引用校验,以及用户明确确认后的永久删除;令牌只在当前页面内存中临时使用。
扩展不读取会话正文、密码、Cookie、付款信息、浏览器历史记录或其他网站的数据。失效引用校验只使用列表响应中的会话标识和轻量详情请求的 HTTP 状态;详情正文会被丢弃。该校验不会发起删除、归档或服务端移动请求。
使用与传输
目录、标题快照、链接、绑定、匿名 scope 哈希和设置只用于本地组织、导航、备份与恢复。只读失效引用校验和永久删除请求都通过 HTTPS 直接发送到 chatgpt.com。任何上述数据、访问令牌或使用情况都不会发送到开发者服务器、广告服务、分析服务或其他第三方。
扩展不出售用户数据、不用于广告,也不允许开发者或其他人员读取用户数据。
数据保存
- 目录、标题快照、会话绑定、匿名 scope 哈希和设置保存在
chrome.storage.local;不使用同步存储、Local Storage、IndexedDB 或开发者服务器。 - 扩展 popup 只保留会话整理和“设置与数据”入口;独立设置页会在“导出备份”旁显示本地目录数据占用,并提供带 schema 版本的 JSON 导出、导入及全部本地目录数据清除。
- 备份包含目录名和会话标题,可能含有敏感信息;只下载到用户选择的本机位置,不会自动上传。
- 卸载扩展会由 Chrome 清除本地目录。待绑定状态、选择状态和访问令牌只存在于页面内存;令牌在每次失效引用校验或快速删除阶段结束后立即清除。
权限
storage:保存本地目录、标题快照、绑定关系和设置;旧版备份可能包含兼容用的最后备份时间字段。activeTab:用户点击扩展图标时识别并联系当前 ChatGPT 标签页。scripting:仅在当前页面尚未加载扩展时,注入扩展包内置的本地 JavaScript 和 CSS;不下载或执行远程代码。https://chatgpt.com/*:显示本地目录与会话整理界面,执行只读失效引用校验,并执行用户单独确认的永久删除。
扩展不申请 unlimitedStorage、tabs、其他站点 host 或第三方网络权限。
用户控制
会话可随时从目录移出。失效引用校验每个账号/工作区最多 24 小时一次;列表缺失只触发详情确认,只有明确 404 才解除本地绑定,其他错误全部保留,并汇总提示不会删除 ChatGPT 会话。删除目录会明确说明只删除本地目录,不删除 ChatGPT 会话,并在成功写入后立即生效、不提供撤销。永久删除会话使用独立红色入口和不可恢复确认。用户可导出、导入或清除本地数据,并可暂停或停止永久删除任务。
联系方式
如有疑问,请通过 Chrome Web Store 商品页支持渠道联系开发者。请勿发送访问令牌、Cookie、密码或私人会话内容。
ChatGPT 是 OpenAI 的商标。本扩展是独立的第三方工具,与 OpenAI 无隶属、合作或认可关系。
Privacy Policy
ChatGPT Toolbox: Folders & Cleanup is a local conversation-organization extension that runs in the user's browser. This policy covers local folders, backups, bulk moves, and separately confirmed permanent deletion.
Data handled by the extension
- Folder names, hierarchy, order, and expansion settings created by the user; legacy backups may retain a color field that is no longer displayed or editable.
- Chat titles, links, and identifiers already displayed in the sidebar, used for folder display, one-to-one local membership, and user-selected bulk actions.
- A profile marker visible on the current page, used only in memory to derive an anonymous local scope hash. The raw marker is never stored or logged.
- The current ChatGPT session response's access token, used temporarily in page memory for a read-only unavailable-reference check at most once per day and for separately confirmed permanent deletion.
The extension does not read conversation bodies, passwords, cookies, payment information, browser history, or data from other sites. The unavailable-reference check uses only conversation identifiers from list responses and the HTTP status of lightweight detail requests; detail bodies are discarded. This check never sends delete, archive, or server-side move requests.
Use and transmission
Folder metadata is used only for local organization, navigation, backup, and restore. Read-only unavailable-reference checks and permanent-deletion requests go directly to chatgpt.com over HTTPS. No folder data, chat metadata, access token, or usage information is sent to developer servers, advertising services, analytics services, or other third parties.
Retention
- Folders, title snapshots, memberships, anonymous scope hashes, and settings are stored in
chrome.storage.local, never sync storage, Local Storage, IndexedDB, or developer servers. - The popup keeps only the organizer and Settings & data entries. The separate options page shows local folder-data usage beside Export backup and provides schema-versioned export, import, and clearing.
- Backups can contain sensitive folder names and chat titles. They are downloaded only to a user-selected local location and never uploaded automatically.
- Chrome clears local extension storage on uninstall. Pending bindings, selections, and access tokens stay only in page memory; access tokens are cleared after each unavailable-reference check or fast deletion phase.
Permissions
storage: Saves local folders, title snapshots, memberships, and settings. Legacy backups may contain a compatibility-only last-backup timestamp.activeTab: Identifies and communicates with the current ChatGPT tab after an extension-icon click.scripting: Injects only packaged local JavaScript and CSS when an already-open page has not loaded the extension. No remote code is downloaded or executed.https://chatgpt.com/*: Shows folder and cleanup UI, performs read-only unavailable-reference checks, and performs only separately confirmed permanent deletion.
The extension does not request unlimitedStorage, tabs, other-site hosts, or third-party network access.
User control
Chats can be removed from folders at any time. Unavailable-reference checks run at most once per account/workspace every 24 hours: a list miss only triggers detail confirmation, and only an explicit 404 removes the local membership. All other errors keep it, and a summary explains that no ChatGPT chat was deleted. Folder deletion explicitly says it affects only local folders and never ChatGPT chats; successful changes apply immediately without undo. Permanent deletion has a separate red entry and irreversible confirmation. Users can export, import, or clear local data and can pause or stop permanent-deletion tasks.
Contact
Use the Chrome Web Store support channel for questions. Do not send access tokens, cookies, passwords, or private conversation content.
ChatGPT is a trademark of OpenAI. This independent third-party extension is not affiliated with, sponsored by, or endorsed by OpenAI.