storage
Required
Why required: Used to write your saved shortcuts, workspace categories, quick notes, local usage statistics, and user preferences directly to chrome.storage.local on your device.
What is NOT collected: Storage is completely isolated inside your local browser profile and is never synced or uploaded to cloud servers.
tabs
Required
Why required: Necessary to open shortcuts, identify active website origins for optional local usage stats and limits, and support seamless in-dashboard workspace navigation.
What is NOT collected: Page content, input history, passwords, or personal credentials are never read or accessed through this permission.
bookmarks
Manual Action Only
Why required: Allows you to manually click "Import Bookmarks" inside extension settings to populate your shortcut dashboard.
What is NOT collected: Bookmarks are never read automatically or in the background. Imported items stay 100% on your device.
contextMenus
Required
Why required: Adds standard right-click context menu options ("Add to Tabvora") so you can quickly save web pages or links to your workspace dial.
favicon
Required
Why required: Uses Chrome's native internal favicon service to render crisp site icons on your shortcut cards without making requests to third-party icon APIs.
alarms
Required
Why required: Used for scheduled local background maintenance tasks, including service worker recovery, optional usage tracking ticks, Digital Wellbeing reminders, and site reachability checks.
host_permissions (http/https)
Optional Features Only
Why required: Scoped strictly to user-enabled optional features like local Draft Recovery (saving unsaved text after tab crash), Website Usage Statistics, Website Limits, and verifying if a saved shortcut URL is reachable.
What is NOT collected: Browsing data is never transmitted to Tabvora servers. Tabvora operates no backend servers.