Privacy Policy
Last updated: 6 September 2026
WindowShopping is a browser extension and companion website that let you save products from online stores, organize them into collections, and get alerts when prices drop or items come back in stock. The iOS app is coming soon on the App Store. This policy explains exactly what data we handle today and the practices that will apply to the iOS app after release. We built WindowShopping to be private by default.
The short version
- Your saved products live on your own device unless you choose to create an account and turn on cloud sync.
- If you sign in, your data is stored in your own private account and is only accessible to you, enforced at the database level.
- We never sell your data — not the data that identifies you, and not in aggregate. We don't show you ads or build an advertising profile.
- We may collect anonymous, aggregate usage counts, used only to improve the app — never sold or shared for advertising (see Anonymous, aggregate analytics).
- Some links may be affiliate links: if you buy after clicking one, we may earn a small commission at no extra cost to you (see Affiliate links).
- We don't track your browsing history or record the pages you visit.
Data stored on your device
By default the extension saves everything locally in your browser: the products you save (name, price, image, link, size/colour where available), your collections, and your settings. This data stays on your device and is not sent to us unless you enable cloud sync.
After release, the iOS app will work the same way. If you choose "Continue without signing in" (guest mode), your saved products and collections are stored only on your device and are never uploaded to us. You will be able to use the app without an account; if you later sign in, you can choose to upload your on-device library to sync it.
Cloud sync (optional — only if you create an account)
If you create an account and sign in, WindowShopping backs up your saved products and collections so you can view them on any device and on this website. To provide this we store, in a private account tied to your user ID:
- Your email address (and first/last name if you provide it) for authentication.
- Your saved products and collections (the same details listed above).
This data is held in our database (hosted by Supabase) and protected by row-level security, which means each account can only ever read or write its own rows. You can sign out at any time to stop syncing, and delete individual products or collections whenever you like.
You may also sign in with Google, or connect Google to an existing account. In that case Google confirms your identity and shares your Google account identifier, email address, and display name with us for the sole purpose of creating and accessing your account. The extension uses the browser's identity API only to open Google's consent screen and receive a sign-in token; we do not receive your Google password and do not read your Google contacts, mail, or any other Google service data.
You may also sign in with Apple. Apple can return an Apple account identifier, email address, and name when you authorize sign-in. Apple provides the name only on the first authorization, and may provide a private relay email address instead of your personal email address. We use these fields only to create and access your account. We never receive your Apple password.
You may optionally upload a profile photo. It is stored in your account's own storage area on the same provider and shown wherever your account is used.
Stopping or removing the backup. Signing out stops syncing and removes the session from that device. The extension's Delete all WindowShopping data button clears the device's local and browser-sync records and signs the device out, but does not by itself erase the copy already backed up to your account. Products and collections you remove while signed in are removed from the backup too. To delete the account and its cloud data permanently, use Account > Data & privacy on the website or the account-deletion control in the extension's settings. In the iOS app, sign in, open Account > Delete Account, and confirm permanent deletion. No support request is required for in-app deletion. If self-service deletion is unavailable, contact us for help.
Compare prices (optional)
When you explicitly choose Compare prices for a saved product that carries a standard barcode (GTIN), the extension sends that barcode together with the product's brand and name to a comparison endpoint we host on our backend provider (Supabase). That endpoint queries a third-party shopping-data provider and returns current offers from other retailers. The request contains no account identity, device identifier, saved library, or product URL, and is sent without cookies; the returned offers are cached by barcode only and are not associated with you. For a product without a barcode, or when no offers are found, the extension instead opens Google Shopping with the product name as the search query, and Google receives that query under its own privacy policy.
Feedback and support messages
When you choose to send a message through the Feedback button in the extension's popup or Settings, we receive the message type, the message text, the email address you optionally enter, the extension version, your browser's user-agent string, and — only when sent from the popup with "include this page" checked — the URL of the page you are on. The message is sent to an endpoint on our backend provider (Supabase) and forwarded by email to our support mailbox. Nothing is sent until you press Send. We use it only to answer you and fix reported problems; it is not linked to your saved-product library and is kept only as long as needed for support.
Price checking
For supported products, the extension re-fetches saved product pages about once an hour while your browser is available, directly from your browser and without sending your login cookies. Price changes require two successful observations before the saved price changes or a price alert is sent. Restock alerts are sent only when WindowShopping can confidently match the saved product or exact variant. Sleeping devices, closed browsers, retailer blocking, and pages that require sign-in can delay or prevent a check. Saving a product does not mean automatic monitoring is available. This happens only for products you have explicitly saved.
Price notifications (iOS app, after release)
After the iOS app launches, if you turn on notifications in the iOS app, we will ask iOS for permission to send push notifications and store your device's push notification token (an anonymous identifier issued by Apple) linked to your account. We use it solely to send you the alerts you asked for — such as when a saved item's price drops or comes back in stock. Notifications are optional: you can decline the permission, or turn them off at any time in the app or in iOS Settings, and we stop sending them. The push token identifies a device for delivery only; it is not an advertising identifier and is not used to track you.
Anonymous, aggregate analytics
To understand how the extension is used and improve it, we may collect aggregate, anonymous counts of a small set of events (for example: a product was saved or removed, a collection was created or deleted, or a price check completed). These counts include the merchant's domain and a product key so counts can be grouped — the retailer's own public product code (such as a SKU or barcode) when the page exposes one, otherwise a one-way hash of the product URL — and nothing else. We use this data only to make WindowShopping better. We do not sell it, and we do not share it for advertising. Specifically, this analytics data contains:
- No user ID, account, name, or email.
- No full URLs, page contents, or browsing history.
- No product names, prices, notes, or tags.
- No way to identify you or link events back to an individual.
The data is stored only as daily totals — there is no per-user or per-device event log.
After release, the iOS app will not collect this usage analytics, and it will contain no third-party analytics or advertising SDKs.
Your choice. This analytics is optional and controlled by a single toggle in the extension's Settings → Data & privacy page ("Share anonymous usage data to improve WindowShopping"). It is on by default in most regions and off by default in the EU and UK, and you can turn it on or off at any time. When it's off, no usage counts leave your device.
Affiliate links
WindowShopping is supported by affiliate commissions rather than by selling your data. Some links to retailers — from the extension or this website — may be affiliate links. If you click one and go on to buy something, the retailer or an affiliate network may credit that purchase to WindowShopping and pay us a small commission. This is always at no extra cost to you, and it never changes the products or prices you see.
What this means for your data. When you follow a link, the retailer or affiliate network receives the ordinary information any web link produces — such as the referring link, your IP address, and any affiliate tag — and may set its own cookies, all under its own privacy policy. We use this only to get credit for a purchase. We do not hand affiliate partners your name, email, account, or the list of items you saved, and we do not sell your data to fund the app or for any other reason.
We are not currently running an affiliate program on every link; this section describes how such links work if and when they are present, so there are no surprises.
What we never do
- Sell, rent, or trade your data — neither data that identifies you nor aggregated data.
- Serve advertising or build an ad profile.
- Track the websites you browse or record your general web activity.
- Access your data from other accounts — sync is strictly per-user.
Your choices and rights
- Use it without an account. Cloud sync is entirely optional.
- Delete your data. Remove individual products or collections at any time, or delete your whole account using the self-service controls described above. In the iOS app, use Account > Delete Account. Contact us if you need help.
- Export. The extension's settings page lets you export your saved data.
Data retention
Your saved products and account data are kept until you delete them or ask us to delete your account. Local data is removed if you uninstall the extension or clear your browser storage.
Children
WindowShopping is not directed to children under 13, and we do not knowingly collect data from them.
Changes to this policy
If we make material changes we will update this page and revise the date above.
Contact
Questions about your privacy or a data-deletion request? Email support@windowshoppings.com.