Legal
Privacy Policy
Last updated: March 17, 2026
Overview
Pluto is a productivity and focus tracking tool. This policy explains what data we collect,
how we use it, and what we never do with it. We built Pluto to help you understand your own
habits — not to surveil you.
The short version: Pluto only runs when you start a session.
Your raw browsing history is never sold or shared. Sensitive sites are automatically
filtered out and never recorded.
What We Collect
- Account information — your email address and display name when you sign up.
- Session statistics — focus score, session duration, productive vs. distracted time, and your written reflection after each session.
- App and tab names — during an active session only, the Chrome extension logs which apps and tab titles you visit and for how long. This is used solely to generate your focus breakdown.
- Preferences — your chosen theme, dark mode setting, and notification preferences.
- Planner and calendar data — tasks, events, and planners you create inside Pluto.
What We Never Collect
- Your full browsing history outside of an active session.
- The full URLs of pages you visit — only the tab title or app name is recorded.
- Any data from banking, medical, government, or legal websites. These are automatically filtered out at the extension level and never reach our servers.
- Passwords, form inputs, or any content you type.
- Your location.
- Any data when you are not in an active Pluto session.
How We Use Your Data
- To generate your focus score and session breakdown after each session ends.
- To display your session history, weekly trends, and productivity stats inside the Pluto dashboard.
- To power gamification features like streaks, quests, and token rewards.
- To sync your data across devices via your Pluto account.
- To send transactional emails (account verification, password reset) via Resend. We do not send marketing emails without your consent.
Data Storage & Retention
- Your account data is stored securely in Supabase, a cloud database provider.
- Detailed activity logs (app names and times) are stored locally on your device for 90 days, then automatically trimmed. Your focus scores and stats are kept indefinitely.
- Raw app tracking activity is never uploaded to our servers — only the aggregated focus score and time breakdowns are synced.
- You can delete your account and all associated data at any time from Account Settings.
Third-Party Services
- Supabase — database and authentication. Your data is stored on Supabase's servers under their privacy policy.
- Stripe — payment processing. Pluto never sees or stores your payment card details. Stripe handles all billing securely.
- Resend — transactional email delivery (verification and password reset emails only).
- Vercel — website hosting.
We do not sell your data to any third party, ever.
The Chrome Extension
- The extension only activates when you manually start a focus session on pluto-productivity.app.
- It reads the active tab title to determine what you are working on. It does not read page content, form data, or passwords.
- Banking, medical, government, and legal domains are hardcoded to be ignored — this filtering happens locally on your device before any data is processed.
- When your session ends, the extension stops tracking entirely.
Your Rights
- You can view all your session data at any time in the Pluto dashboard.
- You can delete your account and all data from Account Settings → Delete Account.
- You can contact us to request a copy of your data or ask any privacy-related question.