Welcome to NUFF.WORK. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our browser extension, our website at nuff.work, and any related services (together, the "Services").
By installing the extension or using our Services, you agree to the practices described in this Policy. If you do not agree, please do not use the Services.
NUFF.WORK is a digital well-being browser extension designed to help you stay focused, reduce digital fatigue, and build healthier screen-time habits. We act as the data controller for the personal information processed through the Services.
When you create an account, we collect your email address and (optionally) your display name. If you sign in with Google, we receive your email, name, and profile picture from Google's authentication service.
If you purchase a paid plan, our payment processor collects the information required to process your transaction (such as billing address and payment method). We do not store full credit card numbers on our servers.
The extension can record information about your browsing activity to provide its core features. Depending on which modes you enable, this may include:
This data stays in your browser. Your history — sessions, events, and time spent on websites — is stored on your device and is not sent to us. Signing in does not change this: an account by itself gives us no access to your statistics.
We do not copy that history to our servers at all. Earlier versions could, if you switched it on; that path has been removed, and the statistics we had were deleted.
If you want the same numbers on a second computer, you can turn on Sync across devices yourself, in Settings. It is off until you turn it on, and it does not go through us: the extension asks Chrome for permission to write to your own Google Drive, into the hidden per-app folder Google calls appDataFolder. The file is on your Drive, the access token is issued to you, and we hold no copy and no key — we cannot read it. Each of your devices writes its own file and reads the others, so two browsers never overwrite each other.
The permission we ask Google for is drive.appdata, which grants access to that hidden folder and to nothing else on your Drive. Your documents, photos and other files stay out of reach; we could not open them if we wanted to. You can see how much space the folder uses, and delete it, in Google Drive under Settings → Manage apps — without asking us. Turning sync off stops the copying and leaves both your local history and the file on your Drive untouched.
You can export your full history to a file at any time, from Settings — sites, mode sessions, events and filter hours, everything the extension knows about you. It is your data, and you should be able to take it with you.
The file is named .nuff.zip — ours by name, an ordinary ZIP archive by content, so it opens with a double-click in any system without renaming anything. Inside are CSV tables that open in Excel or Google Sheets by double-click, and a JSON copy for loading the history back. We are not locking your own history in a format only we can read.
To understand which features are actually used, the extension sends us plain counters such as “a Focus session was started” or “this many minutes of Zen”, grouped by day. These counters carry no account identifier and no website addresses — they are stored as a day, a metric name, and a number, with no way to attribute them to a person. They tell us that a feature is used; they cannot tell us who used it or when you personally did anything.
When you visit our website or call our API, we automatically receive standard log data such as IP address, browser type, operating system, referring page, and timestamps. We use this for security, troubleshooting, and aggregate analytics.
If you contact us by email or other channels, we keep a record of that correspondence so we can respond and improve our support.
To keep the extension reliable, it may automatically send us a technical diagnostic report when it encounters an error. Such a report can include the error message and stack trace, the extension version, your browser and operating system, the feature that was in use, and — if you are signed in — your account identifier. We deliberately minimise this data: any web address that appears in an error's context is reduced to its domain name only (for example, “youtube.com”), and reports never contain the content of the pages you visit or your full browsing history. Diagnostic data is used solely to detect, reproduce, and fix bugs.
We do not read or store the content of the web pages you visit. The extension looks at a page only on your device, and only the domain name ever reaches us — and only in an error report. This is about the sites you browse; on our own website, analytics records how the page was used, as described in section 7.
We use the information we collect to:
The NUFF.WORK extension requests only the permissions it needs to deliver the modes you enable. Common permissions include:
Permissions are used solely to operate the features described in our product pages and this Policy.
Our website uses cookies of two kinds. Necessary ones keep you signed in, protect the forms and remember preferences such as the welcome-promo countdown. Analytics ones are set by Google Analytics and Yandex.Metrika so we can count visits and see which pages people read; Metrika also records how a page was used — mouse movement, clicks, scrolling — with form fields masked. They are not needed for the site to work, and any content blocker stops them. This is our website only: the extension sets no cookies and carries no analytics of any kind. We run no advertising cookies.
We rely on a limited number of trusted vendors to operate the Services. Each provider only receives the data needed for their function:
These providers are bound by contractual obligations to protect your data and may not use it for their own purposes.
NUFF.WORK's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including its Limited Use requirements. We request three Google permissions and nothing else. Your email address and basic profile are used once, to create your account and sign you in. The third, drive.appdata, is requested only if you turn on Sync across devices: it opens one hidden folder that Google creates for this extension on your own Drive, and nothing else there — your documents and photos stay out of reach, and we could not open them if we wanted to. We never sell this data and never use it for advertising.
We do not sell or rent your personal information. We may disclose it only:
We apply industry-standard administrative, technical, and physical safeguards to protect your data — including TLS encryption in transit, hashed passwords, scoped access controls, and regular security reviews. No system is perfectly secure, but we work continuously to reduce risk.
We keep your account information for as long as your account is active. There is no delete button yet. Write to [email protected] from the address on the account and we will remove the account record, the subscription record, your support messages and your error reports within 30 days, and write back when it is done — except where we have to keep something for legal, tax or fraud-prevention reasons.
Uninstalling the extension removes everything it stored on your device. It does not remove the file on your Google Drive, if you used Sync across devices. That file is yours, in your account, and we have no way to reach it — which is also why we cannot delete it for you. To remove it: Google Drive → Settings → Manage apps → NUFF.WORK → Delete hidden app data, or revoke our access in your Google Account, which deletes the folder with it. Reinstalling writes a new file; earlier ones stay until you clear them.
Depending on where you live, you may have the right to:
To exercise any of these rights, contact us at the email below. We will respond within the timeframes required by applicable law.
NUFF.WORK is offered to users worldwide. Your data may be processed in countries other than your own. When we transfer personal data internationally, we use appropriate safeguards such as Standard Contractual Clauses or equivalent legal mechanisms.
Our Services are not directed to children under the age of 13 (or the equivalent minimum age in your jurisdiction). We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will promptly delete it.
We may update this Policy from time to time. When we make material changes, we will notify you by email or through the Services and update the "Last updated" date above. Continued use of the Services after the effective date means you accept the revised Policy.
If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please reach out:
NUFF.WORK Support Team
[email protected]