TabLift Privacy Policy
Last updated: 2026-07-28
TabLift is a browser extension and Android/iOS app that clean up guitar tab and chord
sheets. This page explains what data TabLift collects, why, and what control you
have over it, across both the extension and the mobile app.
The short version
- The browser extension works fully offline by default. If you never create an account, none of your data ever leaves your device. The mobile app always uses an account, since your library needs somewhere to live between sessions and devices.
- Creating an account is optional on the extension, and lets you sync your settings, your saved song library, and (on the extension) your own search API key across devices.
- We store your email address and a unique account ID — nothing else about you as a person.
- We never sell your data, to anyone, ever.
- TabLift offers an optional Pro subscription (unlimited sync, unlimited search results, and other Pro features). Payment is handled by Stripe (website), Google Play Billing (Android app), or Apple's In-App Purchase system (iOS app), depending on how you subscribe — we never see or store your card details, only your subscription status.
- You can permanently delete your account and all synced data at any time, from inside the extension or the app.
What we store, and why
| Data | Why we have it | Where it lives |
| Saved tabs/chords, transpose settings, tuning, theme, etc. |
Core functionality of the extension and app |
Locally on your device always; also in Supabase once you're signed in, so it syncs across devices |
| Email address, account ID (a random identifier, not derived from anything personal) |
To authenticate you and know which synced data belongs to you |
Supabase (see "Who else sees your data" below) |
| Your search API key (extension only, for the optional Search feature), settings/preferences, saved song library |
To sync these across your devices when you're signed in |
Supabase, only if you create an account and use sync |
| Subscription plan (free/Pro), and a purchase/customer reference from whichever provider you subscribed through (Stripe, Google Play, or Apple) |
To know which features your account is entitled to |
Supabase. No card numbers or other payment details are ever stored by us — Stripe, Google, or Apple hold those, depending on how you subscribed. |
We do not collect browsing history, page contents from sites you visit, analytics,
or any tracking data of any kind. TabLift doesn't include ads or an analytics SDK.
Signing in
Account creation uses Google sign-in (extension and app) or Apple sign-in (app).
When you sign in, that provider shares your email address and account identifier
with our authentication service (Supabase) so it can create your account —
TabLift never sees or stores your password, and we never receive anything from
these providers beyond what's needed to identify your account.
Who else sees your data
- Supabase hosts our database and authentication service. They store your account data on our behalf, encrypted at rest and in transit, and enforce database-level rules (Row Level Security) so your account can only ever read or write its own data — not even we can query one user's data through another's session.
- Google and Apple act as sign-in providers, per above, and also as payment processors if you subscribe via Google Play or Apple's In-App Purchase system (see below).
- Stripe processes Pro subscription payments made through our website. Google Play processes payments made through the Android app, and Apple's In-App Purchase system processes payments made through the iOS app. In every case, your payment details go directly to that provider; we only ever receive your subscription status and a reference ID, never your card number or other payment details.
- Brave Search API (browser extension only) — if you turn on the optional Search feature and supply your own Brave API key. Your search queries and API key are sent directly from your browser to Brave to perform the search; they never pass through or get stored on any server we control.
- Brave Search API (mobile app, Pro feature) — also powers the app's search feature. Unlike the extension's bring-your-own-key integration above, the app's search queries go through our server first (so we can enforce your account's monthly search quota) and are then forwarded to Brave using our own shared API key. To reduce cost, results are cached on our server for up to 7 days, keyed by a normalized version of the query text rather than by your account — that cache is shared across all users and is never linked back to who searched for what.
- Firebase Crashlytics (mobile app) — if the app crashes or hits an unexpected error, a crash report (device/OS info, app version, and a stack trace) is sent to Google's Firebase Crashlytics service so we can find and fix the bug. If you're signed in, that report is tagged with your account ID so we can tell how many people a given issue affects — it never includes your saved song content, email address, or password.
We do not sell, rent, or otherwise share your data with any other third party.
How long we keep it
Synced data is kept for as long as your account exists. If you delete your
account, your account and all synced settings/songs are permanently deleted
immediately — this isn't a soft-delete or a grace period. If you never
created an account on the extension, uninstalling it removes all local data from
your device.
Your rights
- Access: your synced settings and song library are visible directly in the extension or the app at any time.
- Deletion: open the extension's Account panel, or the app's Settings screen, and choose "Delete my account" to permanently delete your account and all synced data. You can also email us (below) to request deletion. Full steps: Data Deletion Instructions.
- Portability: your song library can be exported to a file at any time from the Library tab (extension) or Settings (app).
Children's privacy
TabLift is not directed at children under 13, and we do not knowingly collect data from children under 13.
Changes to this policy
If our practices change, we'll update this page and the "Last updated" date above.
Contact
Questions, or a deletion request by email: trav-dev@outlook.com