Privacy Policy
Effective date: September 13, 2026
Firstlight — New Tab Dashboard ("Firstlight", "the extension", "we") is a Chrome browser extension that replaces the New Tab page with a customizable widget dashboard. This policy explains what data the extension handles and how.
The short version
- Firstlight has no servers, no accounts, no analytics, and no ads.
- Everything you create in the extension is stored locally in your browser using Chrome's storage.
- We never collect, transmit, sell, or share your personal data. There is nowhere for it to go — we don't operate a backend.
- Google sign-in is optional and only used to display your own Google Calendar, Gmail, Tasks, and Drive data inside your new tab.
Data stored in your browser
Your dashboard layout, widget settings, and widget content (to-do items, notes, habit history, timers, cached feed and API responses) are saved with chrome.storage.local on your device. If you enable the optional cross-device sync, a copy of this data is mirrored to chrome.storage.sync, which Chrome itself synchronizes through your own Google account. That sync is performed entirely by your browser — the data never passes through any server of ours.
Uninstalling the extension deletes its local data. Synced data can be removed by disabling sync in the extension or clearing Chrome's synced extension data.
Google user data (optional sign-in)
If you choose to connect your Google account, Firstlight uses Chrome's built-in identity system (chrome.identity) and requests these OAuth scopes:
| Scope | Used for |
|---|---|
calendar.readonly | Reading your upcoming calendar events to display them in the Calendar widget. Read-only. |
gmail.metadata | Reading message metadata (sender, subject, date) to show an inbox summary in the Gmail widget. This scope cannot read email bodies or attachments. |
tasks | Displaying your Google Tasks and letting you check tasks off from the widget. |
drive.metadata.readonly | Listing your recent Drive files (names, types, links) in the Drive widget. Read-only; file contents are never accessed. |
Google data is fetched directly from Google's APIs to your browser, displayed in your new tab, and cached in local Chrome storage so widgets can render while offline or between refreshes. It is:
- never transmitted to us or to any third party;
- never used for advertising;
- never read by humans;
- never sold.
Firstlight's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
You can disconnect at any time via any Google widget's settings ("Disconnect Google"), and you can revoke the extension's access entirely at myaccount.google.com/permissions. Disconnecting stops all Google API requests; cached data remains only in your local browser storage until you remove the widget or uninstall the extension.
Third-party services
Some widgets fetch public data directly from your browser. These requests are keyless and include no account information — like any web request, the remote service technically sees your IP address. Firstlight contacts a service only when you use the widget that needs it:
| Service | What is sent | Purpose |
|---|---|---|
| Open-Meteo | Your coordinates or a city name you enter | Weather forecast and location search for the Weather widget |
| Google / DuckDuckGo / Bing suggest | Text you type in the search bar | Search suggestions from the provider you selected |
| Lorem Picsum, Wikimedia | A generic image request | Optional background photos |
| ZenQuotes / Quotable | A generic request | Quote of the day in the Focus widget |
| Google News and RSS feeds you add | The feed URL | Fetching headlines for the News/RSS widgets |
Browser permissions
| Permission | Why Firstlight needs it |
|---|---|
| storage | Saving your dashboard and widget data locally (and optionally to Chrome sync) |
| search | Running your query in your default search engine from the search bar |
| geolocation | Locating you for the weather forecast, only if you choose automatic location |
| topSites | Showing your most-visited sites |
| sessions | Listing and restoring recently closed tabs |
| favicon | Showing site icons next to links and bookmarks |
| notifications | Alerting you when a pomodoro/focus timer finishes |
| identity | Optional Google sign-in for the Google widgets |
| clipboardRead / clipboardWrite | The extension's right-click copy/paste menu inside its own page |
| bookmarks (optional) | Displaying your bookmarks — requested only if you add the Bookmarks widget |
| host access to sites you specify (optional) | Fetching RSS feeds from URLs you add — requested only when you add a feed |
None of these permissions are used to track your browsing. Firstlight runs only on its own New Tab page and does not read or modify other websites.
Children
Firstlight is not directed at children under 13 and does not knowingly collect personal information from anyone.
Changes to this policy
If this policy changes, the updated version will be posted at this address with a new effective date.
Contact
Questions about this policy or the extension: pixelperfectpro.br.extension@gmail.com