Privacy Policy
Last updated: July 23, 2026
NeoTab is a local-first browser dashboard. This policy explains what data the app accesses and how it is handled.
Data we collect
We do not operate a backend server for your content and do not collect, store, or sell your personal data. All of your settings and content (theme, bookmarks, notes, and calendar preferences) are stored locally in your browser using IndexedDB and never leave your device except as described below. We do use a privacy-friendly, aggregate analytics service (see below) that does not identify you personally.
Google Calendar access
If you choose to connect Google Calendar, the app requests read-only access using
the https://www.googleapis.com/auth/calendar.readonly
scope. We use this access solely to read your upcoming events and display them
within the dashboard on your device.
- Authentication happens directly between your browser and Google.
- The short-lived access token Google issues is kept in browser memory only and is used only to request your event list.
- We do not store, share, sell, or transmit your calendar data to any third party.
- The in-app disconnect control clears the local token from browser memory. To revoke NeoTab's Google access, use your Google Account permissions.
Limited Use disclosure
NeoTab's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Analytics
We use Cloudflare Web Analytics to understand aggregate traffic and to distinguish real visitors from automated bots, which helps us keep hosting costs sustainable. Per Cloudflare, it does not use cookies or client-side storage and does not fingerprint individuals.
- It measures aggregate metrics such as page views, referrers, top pages, country, browser and device type, and page performance.
- It does not set cookies, does not store data on your device, and does not build a profile of you across sites or sessions.
- As with any web request, your IP address is transmitted to Cloudflare to serve the request; Cloudflare states it does not use IP addresses to track or fingerprint you. See Cloudflare's privacy policy for details.
Other third-party services
The weather widget sends the ZIP code you configure to a weather data provider in order to retrieve a local forecast. No personal account information is involved.
Data retention and deletion
Because data lives in your browser, you can remove it at any time by clearing the site's data or uninstalling/closing the app. The calendar disconnect control clears the in-memory Google access token for the current session. Removing the site's data deletes all locally stored settings and content.
Contact
This policy is published at https://neotab.dev/privacy.