Privacy policy
In short
- Your library stays in your browser. There is no Marked account and no Marked server.
- Marked has no analytics, no tracking, and no ads. It doesn't sell or share your data.
- It contacts a few outside services, listed below, only for the feature that needs them. Most only happen when you ask: downloading the chat model, semantic search, downloading page text, and importing from X, and tagging that import if you choose.
1. What stays on your device
Everything Marked saves is kept in your browser's storage for the extension, on your computer:
- Your bookmarks, with their titles, addresses, folders, tags, notes, highlights, and abstracts.
- The readable text of pages you save or open again, so you can search and read them later, and where you stopped reading in the reader.
- An index of each bookmark's most telling words, which Marked works out from your library to find related bookmarks.
- Site icons and page previews. A preview is a capture of the visible page, taken when you save it and kept unless you untick Save preview in the editor.
- Your settings, including a TypeSafe API key if you add one.
- The chat model, if you download it, and your chat. The model runs on your GPU; your questions and its answers aren't sent anywhere.
None of this is sent to the developer of Marked or to anyone else, except the specific pieces listed in the next section.
2. Access to the pages you visit
Marked can read the web pages you visit, but only if you allow it. It asks in its own page, which opens once you install it, not in the browser's install prompt, and you can turn it off at any time in Settings → Browsing or in your browser's extension settings. Turned off, Marked leaves every page at once, including pages already open: their highlight marks, ✓, and Highlight button go away. Everything you saved stays in Marked.
- Why it asks: to show the Highlight button when you select text, bring back your highlights and ✓ on pages you revisit, count related bookmarks while you browse, and keep the text of saved articles you revisit. Save open tabs and downloading text for older bookmarks ask for it when you use them.
- What it reads on every page: the page's address, title, description, main headings, and opening paragraphs. Marked compares them with your library to count related bookmarks, holds the result in memory while the tab is open, and forgets it when you close the tab.
- What it reads on pages you've saved: the page's readable text, which it keeps for search and the reader (turn this off in Settings → Page text), and the passages you highlighted there, to mark them again.
- What it reads only when you act: the text you select when you click Highlight; a picture of the visible page when you save it, which shows whatever is on screen (untick Save preview to skip it); and the addresses and titles of your open tabs when you choose Save open tabs.
- What it never reads: what you type into forms and text boxes, including passwords.
- Where it goes: nowhere. What Marked reads from pages stays in your browser, on your device. It isn't sent to us or to anyone else.
- If you don't allow it: you can still save the page you're on with the Marked button, Add to Marked in the right-click menu, or Alt+Shift+M, and highlight with Alt+Shift+H; each lets Marked read just that tab, at that moment. Your library, search, the reader, and chat work as usual.
3. What Marked contacts, and when
Like any web request, each of these lets the service see your IP address and basic browser information. Beyond that, here is exactly what goes to each one.
Hugging Face
- When
- Only when you choose to download the local chat model. Marked asks for your browser's permission to reach Hugging Face first.
- What's sent
- Requests for the model's files (about 2.3 GB, downloaded once). Nothing from your library, and nothing you ask the chat.
- Their policy
- huggingface.co/privacy
X
- When
- In the gallery, to show posts you saved from X as embedded posts. And when you choose Import → Bookmarks from X, which opens your X bookmarks in a tab.
- What's sent
- For embeds, the ID of each saved post that's shown, with X's do-not-track option set. For the import, the tab loads X as you normally would, signed in as you; Marked scrolls that page so X loads your bookmarks, reads the posts shown, and saves them in your library. It adds nothing of its own to what X receives. If you choose to tag the import, the posts also go to TypeSafe, as described below.
- Their policy
- x.com/en/privacy
Hacker News and GitHub
- When
- When you save a Hacker News story or comment, or a GitHub repository, issue, or pull request, or when you download text for one. Never just because you visit one.
- What's sent
- A request to the site's public API (
hacker-news.firebaseio.comorapi.github.com) for that item, to show its card and keep the discussion or README as its text. No cookies or sign-in go with it. - Their policy
- GitHub privacy statement; Hacker News's API is served by Google Firebase (policies.google.com/privacy)
TypeSafe (semantic search and tagging imports from X)
- When
- Only if you add your own TypeSafe Jev API key in Settings, and only when you click Semantic, or import your bookmarks from X with Tag each post with the tags that fit it ticked. Tagging starts off.
- What's sent
- For a search: your search, and for each bookmark its title and abstract. Its note and up to three highlights go too only if you turn on Include notes or Include highlights in Settings → Semantic search; both start off. Never addresses, folders, or tags. For a tagged import: the text of each post that isn't in your library yet (not who posted it), with the text of any post it quotes, the descriptions its images have, and what its link preview shows (usually the site and the page's title); and the names of your tags, so Jev can choose tags for each post. Never the images themselves. Nothing else from your library. Your API key goes with each request so TypeSafe can authorize it. Preview requests without sending them shows you what would be sent.
- Their policy
- See TypeSafe's terms and privacy policy at typesafe.ai.
The sites you bookmarked
- When
- When you download text in Settings → Page text, or when the reader offers to download a bookmark's text and you accept, to get the text of pages saved before Marked kept it.
- What's sent
- A normal request for each page's address. No cookies go with it, so you aren't signed in to the site when Marked reads it.
4. Why Marked asks for its permissions
- Access to the pages you visit (optional): asked for in Marked's own page when it first opens, not in the browser's install prompt. What it's for, what it reads, and what it doesn't are in section 2. Nothing it reads leaves your device.
- Bookmarks: to import your browser's bookmarks on first run, if you agree. Marked never changes them.
- Storage and unlimited storage: to keep your library, including page text, in your browser.
- Context menus, active tab, and scripting: for Save tweet to Marked, highlighting, and saving the page you're on. Active tab lets Marked read only the tab you used the Marked button, the menu, or a shortcut on, at that moment.
- Hugging Face (optional): requested only when you download the chat model.
5. What Marked doesn't do
- No analytics, telemetry, crash reporting, or tracking of any kind.
- No ads, and no selling, renting, or sharing of your data.
- No accounts, and no server run by Marked that your data could reach.
- No use of your data to train AI models. The chat model runs on your device.
- Marked's use of information received through Chrome's extension APIs adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements.
- No record of your browsing. To show ✓, your highlights, and related bookmarks, Marked compares the page you're on with your library, on your device. What it works out for an open tab is held in memory until the tab closes, and nothing about pages you haven't saved is stored or sent.
6. Your control over your data
- Export makes a full backup, saved page text included. It can also write a standard bookmarks file, or your notes and highlights as Markdown.
- Delete any bookmark, highlight, or note in Marked, and it's gone from your browser.
- In Settings → Browsing, you can turn off Marked's access to the pages you visit, or just the related-bookmarks count. In Settings, you can also stop Marked keeping page text, delete all saved text, and remove your API key. In Chat, Remove download deletes the model.
- Removing the extension deletes everything it stored. Export first if you want to keep it.
Because your data never reaches us, we can't see, recover, or delete it for you. It's entirely in your hands.
7. This website
This site is a set of static pages. It sets no cookies and runs no analytics. It loads the Inter font from Google Fonts. The company hosting the site may keep standard server logs, such as IP addresses and the pages requested, for security and operations.
8. Changes and contact
If Marked starts handling data differently, this page will be updated before the change ships, and the effective date above will change.
Questions or concerns? Open an issue at github.com/shinoss/marked/issues.