Privacy Policy — Hint for Salesforce
Effective date: August 16, 2026
Hint for Salesforce (“the extension”) shows inline help icons next to Salesforce fields and record pages. Help articles, votes, and comments are stored in — and served from — your own Salesforce org via the Hint unlocked package your Salesforce administrator installs.
This policy describes what data the extension handles and where it goes. The short version: all data stays between your browser and your own Salesforce org. The extension has no servers of its own, and its developer receives nothing.
Data the extension handles
1. Salesforce session token (authentication information)
To call your org’s REST API as you, the extension reads the Salesforce session cookie (sid) for the Salesforce tab you are viewing.
- It is read on demand, held in memory only, and never written to disk, extension storage, or logs.
- It is sent only to the same Salesforce org that issued it (your org’s
*.my.salesforce.comAPI host), as the authorization header of API calls. - It is never transmitted to the developer or to any third party.
2. Help usage data (stored in your org, not by the developer)
When you interact with help content, the extension records engagement events in your own Salesforce org, where your administrators can report on them:
- The object and field API names the help relates to (e.g.
Account.Industry) — never the values you type into fields - The URL of the Salesforce page where the help was used
- The event type (impression, click, vote, comment, share) and time spent reading
- The content of votes and comments you choose to submit
This data is governed by your organization’s own Salesforce policies and is never visible to the extension developer.
3. Local cache
The extension caches non-personal configuration in the browser’s local extension storage (chrome.storage.local) to reduce API calls: help mappings, field label-to-API-name maps, and the org’s API endpoint path. Entries expire automatically (1 hour or less) and can be cleared at any time by removing the extension. The session token is not part of this cache.
What the extension does NOT do
- No data is sent to the developer or to any third party — there are no developer servers, no analytics, and no telemetry
- No browsing activity is collected outside
salesforce.com/force.compages (the extension does not load on any other site) - No field values, record data, or personal content is read or transmitted, other than votes and comments you explicitly submit to your own org
- No data is sold, rented, or used for advertising or creditworthiness purposes
Limited Use disclosure
The extension’s use of information received from Chrome APIs adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements: data is used only to provide the extension’s single, user-facing purpose (in-app Salesforce help), is not transferred to third parties, and is never used for advertising.
Changes
Material changes to this policy will be published at this URL and reflected in the extension’s Chrome Web Store listing before taking effect.
Contact
Questions about this policy or the extension: hangelo.ca@gmail.com