Redkeep — Privacy Policy
This policy covers the Redkeep Chrome extension. The Deft Foundry account — signing in, buying, the newsletter — is covered separately by the site privacy policy. You do not need one for the library: everything this extension keeps, it keeps in your own browser. Where a feature of it does need you signed in, it is the one named under What leaves your device below.
What it collects
- The saved posts in your own RedNote account: title, author, cover image URL, like count and the post id
- The folders you build and which notes you filed where
- A small cached copy of each cover image, so the library still shows them after RedNote's own image links expire
- How far a harvest has got, so it can be resumed
- When you save or unsave a post on RedNote, so the local library can follow. The post id is used to update the library and is not sent anywhere
- If you choose to sign in: your Deft Foundry name, email, the address of your avatar and which plan you are on, cached in the browser so the extension can show which account it is and whether a paid ceiling is lifted
What leaves your device
- Only if you use auto-filing, and only for the batch being filed: the title, author name and media type of each note, plus the names of folders you already have
- No post id, no body text, no cover image and no link — the server answers by position in the batch, and the mapping back to your notes stays in the browser
- If you signed in with Google: the extension draws your Google profile picture, which means your browser asks Google's image server for it while a Redkeep window is open. Nothing about your library goes with that request
- Harvesting reads your collection from RedNote itself, in the tab you are already signed in to, and cover images are fetched from RedNote's own image servers — so RedNote sees those requests the way it sees you browsing the site. Nothing of yours is sent to RedNote that it did not already have
- One request to deftfoundry.com asks whether you are signed in, and carries nothing about your library. And when you press something here that opens one of our pages — sign in, pricing, help — the link says which extension you pressed it from, so we can tell whether people reach the site through an extension or find it on their own. If that visit is where you create an account, that one word is kept on the account; it says nothing about your library and nothing about where you were before
- Nothing else leaves at all. Searching, building folders, filing by hand and backing up happen entirely inside your browser, and no server of ours is involved in any of them
Who else sees it
- Auto-filing only: the batch above is passed by deftfoundry.com to OpenRouter, which routes it to the language model that suggests the folder names. The API key is ours and lives on our server, never in the extension
- Google, for the profile picture above and only if that is how you signed in. It is the same request any page showing your Google avatar makes; sign in by email instead and the extension draws your initial and asks Google for nothing
The use of information described on this page complies with the Chrome Web Store User Data Policy, including its Limited Use requirements.
Where it is kept, and for how long
Until you remove the extension or clear its storage. Uninstalling Chrome extensions deletes their storage with them. On our side, auto-filing keeps only a count of how many notes it has filed for your account — never the notes.
What it can reach, and why
- storage / unlimitedStorage
- Holds your harvested notes in the browser. Thousands of them is more than the default quota allows.
- alarms
- Wakes the extension about once a minute to fetch the next page, and to work through an auto-filing run — so a long job survives the panel being closed. Both alarms are the extension's only timers.
- scripting
- Runs one function inside your own signed-in RedNote tab to ask for the next page of saves. The site's API cannot be called from outside its own page.
- sidePanel
- Opens the search panel down the side of the browser, so you can search your library without leaving the page you are on.
- webRequest
- Notices when you save or unsave a post on RedNote, so the local library stays in step without re-harvesting everything. It only watches the two RedNote domains, only reads the address of those two requests and the post ids inside an unsave, and never reads a response or changes a request.
- rednote.com / xiaohongshu.com access
- The two domains RedNote serves your collection from.
- deftfoundry.com access
- Reads whether you are signed in to Deft Foundry, and — if you use auto-filing — sends that batch of titles for the model to sort. Everything else works signed out; no note ever leaves your browser for anything else.
Your choices
Removing the extension deletes everything it stored — Chrome discards an extension's storage with the extension. If you also have a Deft Foundry account, you can export or delete it from the account data page.
Questions
Write to [email protected]. Changes to this policy move the date at the top of this page.