Privacy Policy
Last updated: September 11, 2026
The short version
The ReadLens extension sends page content to our servers only when you press Summarize (or ask a follow-up question) on that page. Your summary history is stored locally in your browser — our servers keep a copy of a summary only if you explicitly click Share to create a public link. We never read pages in the background.
Who is responsible
ReadLens is a product of Xeviora, a brand operated by LIU HU, a sole proprietor, who is the controller of the personal data described in this policy. Contact: support@xeviora.com
Data we collect
- Account data. When you create an account: email address, name, and — if you sign in with Google or GitHub — the basic profile those providers share. To keep you signed in we also store session records, which include the IP address and browser user agent of the session.
- Summarization requests. When you summarize a page or ask a follow-up question, the extracted text, tables, URL and title of that page are sent to our server and forwarded to our AI provider (OpenRouter) to generate the response. We do not use this data for training and do not retain the page content after the request completes.
- Shared summaries. When you click Share, that one summary (title, page URL, summary text) is stored on our servers and becomes readable by anyone with the link, until you delete it.
- Credits and referrals. A ledger of credit grants and charges (for example "quick summary" or "subscription credits"), and — if you use or share an invite link — which account invited which.
- Billing. We store your subscription status, plan and Paddle customer/subscription identifiers. See "Payment processing" below.
- Uninstall feedback (optional). If you answer the short survey shown after uninstalling, we store your answer and comment anonymously, without linking it to an account.
Your summary history stays on your device
ReadLens has no cloud library. The summaries you generate are saved only in your browser's local storage (IndexedDB) by the extension. We cannot see them, they are not synced to our servers, and clearing them in the extension or uninstalling it deletes them.
Public share pages
Pressing Share publishes that one summary at a public address on readlens.xeviora.com/s/… Anyone who has the link can read it without an account, and it may be shared onward or found by others. Do not share summaries of pages that contain personal or confidential information. You can delete any share link from the dashboard or the extension at any time; after deletion the page returns "not found".
What we never collect
- Your browsing history — the extension reads a page only when you ask it to.
- Content of pages you did not explicitly summarize.
- Your local summary history — it lives in your browser's storage only.
- Anything from idle usage — no background telemetry.
AI processing
To provide summaries, deep analyses and answers to follow-up questions, the content you submit is sent to our AI service providers (OpenRouter and the model providers it routes to) for processing. We do not use your content to train models, and our providers process it only to return results to you.
Payment processing
Payments are processed by our reseller and Merchant of Record, Paddle.com ("Paddle"). Paddle collects and processes your payment and billing information (such as name, email, billing address, country and payment details) as an independent data controller in order to process your order, calculate taxes, prevent fraud and meet its legal obligations. We never receive or store your full card details. We receive limited order information from Paddle (such as your email, country, plan and transaction status) to provide the service. See Paddle's Privacy Notice: https://www.paddle.com/legal/privacy.
Extension permissions and why they are needed
These are exactly the permissions declared in the extension's manifest — no more, no fewer. If a permission is ever added or removed, this list changes with it.
storage— remembers your interface language, summary output language, panel theme, default summary depth, and the local daily counter behind the free Copy Prompt allowance. Nothing in storage is sent to a server.unlimitedStorage— lets the local summary history hold up to 300 full summaries of long pages without hitting the browser's default quota. This storage is on your device only.sidePanel— ReadLens has no popup; its whole interface is a Chrome side panel opened beside the page.contextMenus— adds a single right-click item so you can summarize the page you are reading without moving to the toolbar.downloads— saves an exported summary to your computer when you click an export action. No automatic or background downloads.tabs— reads the active tab's title and URL so the panel can show which page it is about to act on, and addresses the extraction request to that exact tab. Your other tabs are not enumerated and no browsing history is collected or transmitted.clipboardWrite— copies the summary, or the ready-made prompt produced by Copy Prompt, when you click a copy action.- Host access to readlens.xeviora.com — the extension calls our API for summaries, follow-ups, sharing and your account status, reusing your normal site session cookie. This is the only remote host the extension may reach.
- Content script on all sites — ReadLens exists to read whichever page you are currently viewing, and that page can be on any website, so the script must be declared broadly. It has no user interface, does nothing on page load, and extracts text only when you press Summarize on that tab.
Data retention and deletion
Shared summaries persist until you delete them from the dashboard or the extension. Local history can be cleared inside the extension anytime. You can delete your entire account yourself from Settings → Danger zone: type the confirmation code shown there and your account, every shared summary and your credit history are removed immediately and permanently. No email request and no waiting period. Paddle keeps its own order records as required by tax and accounting law.
Service providers
We rely on: Vercel (hosting), Neon (database), OpenRouter and the model providers it routes to (AI processing), Paddle (payments, as an independent controller — see above), Resend (password-reset emails), and Google and GitHub (only if you choose to sign in with them). Each receives only the minimum data needed for its function. We do not sell your personal data.
Cookies
We use only first-party cookies, scoped to readlens.xeviora.com: a session cookie for authentication, a cookie that remembers your chosen site language, and a cookie that remembers an invite code for 30 days when you open someone's invite link. No advertising or cross-site tracking cookies.
Your rights
Depending on where you live, you can ask to access, correct, delete or export your personal data, and object to or restrict its processing. Most of this you can do yourself in the dashboard; for anything else email support@xeviora.com and we will respond within 30 days. You also have the right to complain to your local data protection supervisory authority.
Contact
ReadLens is a product of Xeviora. Questions about this policy, or to exercise any of the rights above: support@xeviora.com