Public privacy policy
Tokenwatch Privacy Policy
Effective date: September 9, 2026
Tokenwatch is local-first. It has no Tokenwatch analytics, ads, tracking SDKs, remote executable code, or Tokenwatch-controlled usage-data backend.
Data Tokenwatch accesses
Tokenwatch accesses only the minimum provider-session information required to read usage limits from services the user enables. It uses the browser's existing signed-in session and does not ask for or store provider passwords.
Supported browser-provider access is restricted to Claude, ChatGPT / Codex, and Gemini. The optional Antigravity integration communicates with a locally installed Tokenwatch companion through Chrome Native Messaging.
Data stored locally
Tokenwatch stores extension preferences and a recent successful usage snapshot in chrome.storage.local on the user's device.
- Enabled or disabled provider preferences.
- Provider display order.
- Toolbar warning threshold.
- The most recent successful usage snapshot for enabled providers.
Data sent externally
Tokenwatch does not send usage data, browsing history, account identifiers, or settings to a Tokenwatch-controlled server. Browser-provider network requests are limited to the provider domains needed to retrieve the user's own usage information.
When the optional Antigravity integration is used, the extension sends a small versioned usage request to the locally installed Tokenwatch companion. That communication stays between the extension and the native host on the user's computer.
Analytics, advertising, tracking, and remote code
Tokenwatch contains no analytics SDK, advertising SDK, tracking pixel, telemetry service, or behavioral profiling system. It does not download or execute remote JavaScript; extension code is packaged with the extension.
Data deletion
Users can remove Tokenwatch-local data by removing the extension or clearing the extension's storage from the browser. Removing the optional native companion removes that local integration separately.
Third-party services
Claude, ChatGPT, Gemini, and Antigravity are third-party products with their own privacy terms. Tokenwatch is unofficial and is not affiliated with Anthropic, OpenAI, Google, or the providers of those products.
Permissions used
The following permission descriptions reflect the current extension manifest and product behavior.
cookiesReads Claude's active-organization cookie required to request the signed-in user's usage data.
tabsFinds already-open signed-in ChatGPT and Gemini tabs used for authenticated page-context usage reads.
scriptingRuns packaged usage-reading code inside the signed-in ChatGPT and Gemini page context. No remote JavaScript is executed.
storageStores local provider preferences, ordering, warning threshold, and the most recent successful usage snapshot.
alarmsSchedules reset-aware clearing of toolbar warning state around provider reset windows.
host accessLimits provider access to the Claude, ChatGPT, and Gemini domains needed to retrieve the user's own usage information.
nativeMessagingoptionalConnects only to the locally installed Tokenwatch companion when the optional Antigravity integration is enabled.
Changes to this policy
If the extension's data practices materially change, this policy will be updated before or alongside the release that introduces those changes.
Contact
Questions about this privacy policy can be sent to anukamithara@gmail.com.
Developer: Anuka Mithara