Privacy and permissions

Keep your focus system private, intentional, and under your control.

FocusTrack is built to turn real work into XP without turning your work history into a data product. This page explains what stays on your device, what can sync to hosted services, which outside service may receive a limited summary, and how to ask for your data. Last reviewed July 21, 2026 for the current private beta.

FocusTrack app

  • Starts Work Mode and shows what happened after a session.
  • Turns eligible focused activity into XP and records scoped activity receipts.
  • Stores app state locally; some signed-in settings and receipt rows can sync to hosted account storage.
  • On supported systems, desktop login tokens use the operating system's secure storage. The current beta has a local fallback when secure storage is unavailable, so do not use it on a shared computer.

Chrome Extension

  • Shows FocusTrack on the work sites you choose.
  • Reads the full active-tab address, including the path and any query text in the URL, plus the tab title on your device so it can classify the page and help you return to recent work.
  • Counts eligible interactions without capturing what you type or taking screenshots.
  • Keeps current tab context and recent productive-tab details in Chrome session storage while they are needed.

What can earn XP, and what cannot

  • This site only knows what happens here: pages viewed, FAQ opened, privacy links clicked, or access requested.
  • Those actions do not create XP, rewards, Flow, or character growth.
  • Chrome work can earn XP only after you add the Chrome Extension.
  • Desktop Work Mode can earn XP only after you install the app and start a session.

What a current activity receipt contains

  • Current activity receipts record scoped XP events. They do not prove finished work or impact.
  • They can include timing, activity classification, XP calculation details, session or device identifiers, and a limited summary.
  • They do not contain typed text, screenshots, raw files, code, documents, or raw page content.
  • FocusTrack does not sell your work history or use it for ads.

What stays on this website

  • Welcome-flow choices and website interaction history stay in this tab's browser session and clear when that session ends.
  • This website cannot read your other tabs, desktop apps, files, or offline work.
  • If you request beta access, we store your email plus any optional operating-system, browser, Chrome-use, goal, first-plan, or request details you submit.
  • The request also records the source page, browser user-agent, and a one-way hash of your IP address. It is stored outside the public website folder, and a copy is emailed to FocusTrack support.

Hosted account storage and outside services

  • Signed-in account settings and some receipt rows can be stored with Supabase. Row-level access rules limit normal account access to the signed-in owner.
  • Our cloud provider supplies encryption in transit and at rest. This is not end-to-end encryption with a key only you hold.
  • Authorized service operations can access hosted rows when needed to operate, secure, troubleshoot, or support the beta.
  • When Identity Reflection runs and server quota is available, a limited structured summary can be sent to OpenAI. It may contain goal and identity choices you entered during setup, level and session totals, focused minutes, Flow status, recovery or distraction counts, and basic quality indicators. It does not include raw page text, screenshots, raw receipt records, or file contents.
  • Under OpenAI's current API policy, API inputs and outputs are not used to train OpenAI models by default unless the API customer opts in. OpenAI may retain API content in abuse-monitoring logs for up to 30 days by default. FocusTrack does not promise Zero Data Retention today. Read OpenAI's API data controls.
  • Identity Reflection is read-only. It cannot award XP, decide that work is complete, change Flow, or alter rewards.

Chrome Extension permissions explained before install

  • <all_urls> site access lets FocusTrack appear on the work sites you choose.
  • Tabs and scripting let the Chrome Extension read the active tab address and title, classify the page locally, and update the FocusTrack overlay while you work.
  • Storage, idle, side panel, and alarms keep settings, Work Mode, and Chrome Extension panels working.
  • Native messaging supports the desktop app connection. We explain that connection before setup.
  • Any future account, billing, or sync feature gets its own plain explanation before it is turned on.

Retention, export, and deletion in the current beta

  • Closing the website tab ends its temporary browser session data. Chrome session context clears with the Chrome session.
  • We have not yet published a fixed automatic retention period for beta request records or synced receipt rows.
  • Self-service account export and deletion are not live yet.
  • Email info@focustrack.ai to ask what data is held, request an export, or request deletion. We will confirm what can be removed from the website, Chrome Extension, desktop app, and hosted account.

Privacy review

Read this first. If the setup feels right, request your desktop beta invite.

Request Desktop Beta Invite