Privacy Policy
Choice is built to collect as little personal data as possible. You do not need an account to use the website or extension.
What Choice never sees
Choice works without knowing who you are. There is no account, no login and no profile, and the values you choose never reach our servers.
The extension makes no request and reads no site domain until you explicitly allow domain checks in its first-run screen. Declining keeps every network feature off. You can withdraw that choice later in the extension’s Settings.
- Only the bare domain. The extension sends the domain by itself —
amazon.com— and nothing more. Never the full URL, the page path, what you searched for, what is on the page or anything you type into it. The server rejects any request carrying more than a bare domain. - No account, no login, no identifier. A lookup carries no account, no sign-in, no device ID and no tracking cookie. There is nothing in it that points back to you.
- Lookups are never logged. The domain is not written to a log, a history or a per-person record. Choice stores company research, not who looked at what — so there is no browsing history here to leak, sell or hand over.
- Your values stay on your device. The issues you choose to be warned about are saved in your own browser and never leave your device. Choice cannot see what you selected, because Choice never receives it.
- The matching happens on your device. Your browser compares the company’s evidence against your issues locally. Choice sends the company record out; your side of the comparison never comes back.
- No tracking in the extension. The extension sends no analytics, usage events, advertising identifiers or error reports. After you allow domain checks, it can ask Choice for the current site’s company record; it also requests aggregate issue-coverage counts, searches when you type in its search box and sends a report only when you press the button to say a finding is wrong. These operational requests carry no account, device ID or analytics cookie.
A miss is not saved or turned into a research job. Choice processes the bare domain long enough to look for an existing published company record, then returns “unknown.” Cloudflare processes the bare-domain request in transit as Choice’s network and security provider; Choice’s origin does not write the domain to an access log.
Extension permissions
The browser shows broad permission names. Here is what Choice actually uses them for:
- All-sites access (
<all_urls>): Lets the extension read the current site’s domain and show a company warning when a page loads. Choice does not read the page’s text, searches, forms or personal information. - Storage: Saves the issues you chose, your settings and any picks still awaiting review on your device. This data is not sent to Choice.
- ActiveTab: Lets the popup access the current tab after you open the extension.
Information Choice handles
- Domain-check consent: Before reading or sending a site domain, the extension explains the automatic transfer and waits for you to press Allow domain checks. Declining or withdrawing consent prevents requests and erases cached lookup results.
- Company Lookups: After consent, the extension sends a bare domain without an identifier. Choice returns an existing company record, does not write the lookup to its logs and does not turn a miss into a durable research job.
- Warning Matching: Conflicts, non-conflicts and unknowns are calculated in the extension. Choice does not receive a political label or inferred profile — the only thing that ever names a finding is a report you choose to send.
- Finding Reports: If you press thumbs-down on a finding or a suggested alternative, Choice stores which company and which finding you marked, the reason you picked from the list and your optional note. Nothing is attached to it — no account, device ID, session or cookie — so reports cannot be linked to each other or back to you. Because the findings you see depend on the issues you chose, a report can imply one of those issues. Nothing is sent unless you press the button.
- Website usage: The Choice website uses the analytics described below. This does not cover other sites you visit.
- Browser Waitlist Email: If you ask to hear when a browser version is ready, Choice stores your email, requested browser and signup date.
- Legacy Company Alert Rows: Choice no longer accepts company-alert subscriptions. An older row may contain an email, company slug and signup date until the normal 12-month purge or an earlier deletion request removes it.
- Tag Requests: If you suggest a tag, Choice stores the text and date without your name, email or another identifier.
Browser Waitlist & Legacy Alert Rows
The optional browser waitlist is the only current form where Choice stores contact details. The unfinished company-alert form has been removed and accepts no new addresses.
- Retention: Entries are deleted automatically 12 months after submission.
- Use: Choice does not sell, rent or share these lists. A browser-waitlist email is used only for the requested browser-release notice. Legacy alert rows are retained only for expiry or erasure and are not used for marketing.
- Early deletion: You can have the address erased sooner at /waitlist/erase. The form works without JavaScript and deletes every matching row.
Website analytics
Website
If you press Accept, Choice loads PostHog for pages viewed, clicks, referral and campaign links, device/browser type and masked session replays. All text inputs and passwords are masked. Before you accept—or after you decline—PostHog is not loaded and no website analytics event is sent.
Website analytics events discard the IP address, and Choice does not derive a location from it. With consent, some events can be sent by the server so broken searches or signup forms are visible. Those events never include what you typed, your email or an extension lookup domain.
Extension
The extension sends no analytics of any kind—no usage events, error reports, advertising identifiers or analytics cookies. Before you allow domain checks it makes no operational request. After consent, its request types are a company lookup for the current bare domain, aggregate coverage counts by issue, a search when you type in its search box and a report when you press thumbs-down. None carries an account, device ID or session.
Consent and advertising
Choice does not load advertising or conversion-measurement tags.
- Every visitor: PostHog is off and its script is not requested until you press Accept. Pressing Decline keeps it off.
- The consent answer is stored in your browser. Clearing site data shows the banner again.
Service providers and security
Choice does not sell, trade or rent personal information.
- PostHog: Website analytics and masked session replay.
- Sentry: Production error monitoring. It receives a report only when the website fails; performance tracing is off by default. Request bodies, cookies, query strings, IP headers, emails, visited domains and stack-frame local variables are scrubbed before a report leaves the server.
- Cloudflare: DNS, TLS termination, traffic filtering and the encrypted tunnel to Choice’s origin. Cloudflare processes network metadata such as an IP address and, for extension lookups, the bare-domain request in transit to deliver and protect the service. Choice’s origin access log omits IP addresses, query strings, referrers, user agents and request bodies; it retains only time, method, path, status, response size and latency under short log rotation.
The site and extension use HTTPS. Choice does not promise that electronic storage is perfectly secure or claim protections it cannot verify.
Choice’s use of information received from Chrome APIs adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements. Choice uses that information only to provide or improve the extension’s disclosed company-research features; it is not used for advertising, profiling or sale.
Your controls
- Clear local data: Clear the extension’s stored data or reinstall it to remove your saved issues and settings.
- Withdraw extension consent: Open Choice, choose Settings and press Turn off domain checks. Requests stop and cached company lookups are erased; your local belief answers remain until you clear them.
- Disable the extension: Disable or uninstall Choice from your browser’s extension page.
- Delete Your Waitlist Email: Browser-waitlist and any legacy company-alert rows are deleted automatically after 12 months. To remove yours sooner, use /waitlist/erase.
- Withdraw analytics consent: Clear this site’s stored data and choose Decline when the worldwide consent banner returns.
Terms of Service
By using the Choice website or extension, you agree to these terms.
Using Choice
Use the service lawfully and through the interfaces Choice provides. Do not interfere with the service or try to bypass its security.
Information and ownership
Company findings and alternatives are provided for information, not as legal, financial or professional advice. Choice works to keep them accurate but cannot guarantee that every record is complete or current. The Choice name, logo and original site content belong to Choice and its licensors.
Liability
To the maximum extent allowed by law, Choice and its affiliates, officers, employees and agents are not liable for indirect, incidental, special, consequential or punitive damages, lost profits or revenue, or loss of data, use, goodwill or other intangible losses caused by access to, use of, or inability to use the service.