Privacy Policy — Tabmit

Last updated: 2026-08-17

What Tabmit does

Tabmit is a browser extension that sends the content of the current browser tab (or, for bookmark-folder profiles, a batch of bookmarked tabs) to a destination of your choice: your default e-mail client, Gmail, Notion, Google Drive, OneDrive, Dropbox, or a TabMitTag server you control. Every submission is initiated explicitly by you — either by clicking the toolbar button, using the right-click menu, or manually running a bookmark-folder profile. Tabmit never acts automatically or in the background on its own. Tabmit does not collect any user data for the developer's own purposes.

What data is transmitted and where it goes

When you invoke a profile, Tabmit reads the following data from the active tab (or, for a binary file such as a PDF, downloads the file itself) and forwards it to the service configured in that profile:

DataDestination
Page titleEvery destination
Page URLEvery destination (when "Include page URL" is enabled)
Page content (HTML and/or plain text, or extracted PDF text)Every destination
Extracted keywords/tagsNotion, and other destinations that support tagging
Images and stylesheets embedded in the pageInlined into the email body (Gmail/clipboard profiles only); never sent to Tabmit
The bookmarked page's URL, and (for bookmark-folder profiles) actions taken on the bookmark itself (kept, moved, or deleted)Your own browser's bookmarks, not transmitted anywhere external

The destination is always a service that you control and authenticate to directly:

No data is ever sent to the Tabmit developer or any server operated by the developer.

What data is stored locally

Tabmit stores the following data in your browser's chrome.storage.local (or browser.storage.local on Firefox), which stays on the device it was created on and is not synced across your devices:

ItemPurpose
Profile definitions (name, client type, destination folder/recipient/database, format and other options)Remembers your configured profiles
Notion integration tokenAuthenticates requests to the Notion API; stored encrypted with a passphrase you set
TabMitTag server URL and, in API-key mode, the API key you provideAuthenticates requests to your own TabMitTag server
Default profile selectionDetermines which profile is invoked by default
Recent submission log (URL + timestamp, overall and per-profile)Powers the toolbar icon submission indicator and the "skip already submitted" bookmark-folder option
Bookmark-folder processing logRecords success/failure/skip status per bookmark for the report shown after a bookmark-folder run
Paywall-detection rules and custom global settings (timeouts, PDF-text limits, etc.)Lets you customize extension behavior

OAuth access tokens for Gmail, Google Drive, OneDrive, and Dropbox are managed by the browser's own identity APIs (or Dropbox/OneDrive/Google's own sign-in flow) and are not written into Tabmit's own storage.

This data is stored only on your own device(s). The developer has no access to it.

Third-party services

When you use a Gmail, Google Drive, OneDrive, Dropbox, Notion, or TabMitTag profile, data is transmitted to that service. Their own privacy policies apply:

Permissions used

PermissionWhy it is needed
activeTabRead the current tab's title, URL, and content when you click the toolbar button
scriptingInject a one-shot script to capture the live page DOM (title, URL, HTML, selected text)
storagePersist your profiles and settings in chrome.storage.local
contextMenusAdd profiles to the browser right-click menu
clipboardWriteWrite self-contained HTML to the clipboard for clipboard-mode profiles
notificationsShow a brief confirmation notice after a page is submitted
bookmarksRead bookmarks from a user-selected folder to submit multiple pages in sequence, and move/delete processed bookmarks (bookmark-folder profiles)
declarativeNetRequestWithHostAccessSet a mobile User-Agent for a bookmarked page's tab when a bookmark-folder profile requests the site's mobile version, so simplified mobile markup can be captured
offscreenRun a hidden document with DOM access so the service worker can parse and inline HTML (Chrome only)
identityObtain OAuth tokens to authenticate Gmail API and Google Drive API calls, each scoped to only the API being used (Chrome only)
sandbox (Chrome only)Load Google's own Picker widget in an isolated page so you can choose a Google Drive folder without granting Tabmit broad Drive access
host_permissions: <all_urls>Fetch images/stylesheets for inlining into Gmail/clipboard email bodies, and upload binary tabs (e.g. PDFs) to your chosen destination
host_permissions: api.notion.comSend page content to the Notion API using the integration token or session you provided
cookies (optional)Read your existing Notion session cookie when you opt into Notion "cookie mode", requested only when you enable that option

Contact

Questions or concerns: github.com/tomtom/tabmit/issues