PolyPost Privacy Policy
Last updated: August 27, 2026
PolyPost translates content on X through the DeepL API. It has no analytics, advertising, tracking, developer-operated backend, or user account system.
Data handled by the extension
PolyPost handles only the data required to provide translation:
- DeepL API key — stored in
chrome.storage.localin the user's local Chrome profile and used to authenticate requests sent to DeepL. - Language preferences and automatic-translation setting — stored in
chrome.storage.local. - Visible X post content — sent to DeepL only when the user requests a translation or when it is needed to identify the language of a post being replied to.
- Post and reply drafts — sent to DeepL when the user requests manual translation or explicitly enables translation before publishing.
The extension does not collect browsing history. It runs only on x.com and twitter.com.
How data is used and shared
Text and the API key are transmitted directly from the extension to the official DeepL API endpoints over HTTPS. They are used exclusively to return the translation requested by the user. PolyPost does not operate an intermediary server, receive a copy of the text or API key, sell data, use data for advertising, or allow humans to read user content.
DeepL processes information received by its API according to the terms and privacy rules applicable to the user's DeepL API plan. See the DeepL Privacy Policy and DeepL API Terms and Conditions.
Storage and deletion
The API key and preferences remain in the local Chrome profile until the user deletes them, clears extension storage, or uninstalls PolyPost. The settings page provides a Delete local data button. PolyPost itself does not retain translated text after a request is completed. Retention by DeepL, if any, is governed by the user's agreement with DeepL.
Security
All network requests containing user data use HTTPS and are limited by the extension manifest to the official api.deepl.com and api-free.deepl.com hosts. The API key is not exposed to scripts running on X. A secret stored in a client-side browser extension can still be accessed by someone who controls the device or Chrome profile, so a separate, limited API key is recommended on shared devices.
Limited Use disclosure
PolyPost's use of information received from Google APIs and Chrome extension APIs complies with the Chrome Web Store User Data Policy, including the Limited Use requirements. Data is used and transferred only as necessary to provide the extension's user-facing translation feature. It is not used for personalized advertising, creditworthiness or lending decisions, or any unrelated purpose.
Changes and contact
Material changes to this policy will be published with an updated date. Privacy questions can be sent through the developer contact or support link displayed on the PolyPost Chrome Web Store listing.
Polityka prywatności PolyPost
Ostatnia aktualizacja: 27 sierpnia 2026 r.
PolyPost tłumaczy treści na X przy użyciu API DeepL. Rozszerzenie nie ma analityki, reklam, mechanizmów śledzenia, własnego backendu ani systemu kont użytkowników.
Dane obsługiwane przez rozszerzenie
PolyPost obsługuje wyłącznie dane potrzebne do tłumaczenia:
- Klucz API DeepL — przechowywany w
chrome.storage.localw lokalnym profilu Chrome i używany do uwierzytelniania zapytań wysyłanych do DeepL. - Preferencje językowe i ustawienie automatycznego tłumaczenia — przechowywane w
chrome.storage.local. - Widoczna treść postów na X — wysyłana do DeepL tylko na żądanie użytkownika lub gdy jest potrzebna do ustalenia języka posta, na który użytkownik odpowiada.
- Szkice postów i odpowiedzi — wysyłane do DeepL po ręcznym zleceniu tłumaczenia albo po wyraźnym włączeniu tłumaczenia przed publikacją.
Rozszerzenie nie zbiera historii przeglądania. Działa wyłącznie na x.com i twitter.com.
Wykorzystanie i udostępnianie danych
Tekst i klucz API są przesyłane bezpośrednio z rozszerzenia do oficjalnych endpointów API DeepL przez HTTPS. Służą wyłącznie do zwrócenia tłumaczenia zleconego przez użytkownika. PolyPost nie prowadzi serwera pośredniego, nie otrzymuje kopii tekstu ani klucza API, nie sprzedaje danych, nie wykorzystuje ich do reklam i nie umożliwia ludziom odczytywania treści użytkowników.
DeepL przetwarza informacje otrzymane przez API zgodnie z warunkami i zasadami prywatności właściwymi dla planu API użytkownika. Zobacz politykę prywatności DeepL i warunki korzystania z API DeepL.
Przechowywanie i usuwanie
Klucz API i preferencje pozostają w lokalnym profilu Chrome, dopóki użytkownik ich nie usunie, nie wyczyści danych rozszerzenia lub nie odinstaluje PolyPost. Ekran ustawień zawiera przycisk Usuń dane lokalne. PolyPost nie przechowuje przetłumaczonego tekstu po zakończeniu zapytania. Ewentualne zasady przechowywania po stronie DeepL wynikają z umowy użytkownika z DeepL.
Bezpieczeństwo
Wszystkie żądania sieciowe zawierające dane użytkownika korzystają z HTTPS i są ograniczone przez manifest do oficjalnych hostów api.deepl.com i api-free.deepl.com. Klucz API nie jest udostępniany skryptom działającym na X. Sekret zapisany w rozszerzeniu klienckim może zostać odczytany przez osobę kontrolującą urządzenie lub profil Chrome, dlatego na urządzeniach współdzielonych zalecany jest osobny, limitowany klucz.
Oświadczenie Limited Use
Korzystanie przez PolyPost z informacji otrzymanych z Google APIs i API rozszerzeń Chrome jest zgodne z Chrome Web Store User Data Policy, w tym z wymaganiami Limited Use. Dane są używane i przekazywane wyłącznie w zakresie niezbędnym do realizacji funkcji tłumaczenia. Nie są wykorzystywane do reklam spersonalizowanych, oceny zdolności kredytowej, decyzji pożyczkowych ani żadnego niezwiązanego celu.
Zmiany i kontakt
Istotne zmiany tej polityki zostaną opublikowane wraz z nową datą. Pytania dotyczące prywatności można przesyłać przez dane kontaktowe dewelopera lub link pomocy widoczny na stronie PolyPost w Chrome Web Store.