Transparency.
Every browser extension asks for permissions you probably won’t read. This page explains what SSS asks for, why, when it talks to the internet, and what it does with your data — in plain language and as a verifiable list.
We count searches, never their content
Each search sends one event to Google Analytics: the domain of the engine you used (only the host, like duckduckgo.com — never the full address) and your browser language, under a persistent random install ID — pseudonymous, not anonymous. Your selected text is never part of it. On by default in v3.0 (no opt-out toggle yet — planned); the full honest breakdown is in the privacy policy.
No advertising, ever
No ad networks, no sponsored placements in the catalog. Engines are added because users ask for them.
Your queries stay between you and the engine
When you search Google, your query goes to Google — same as if you'd typed it in their search box. SSS doesn't see, log, or proxy it.
Sync uses your browser, not our servers
When it ships with Pro (v3.1), sync keeps your installs of the same browser in step — Chrome with Chrome, Firefox with Firefox — through the browser's own account. It doesn't sync between different browsers, and your engines and sets never touch a server of ours.
What SSS asks for at install.
Every time SSS calls out.
Found something we missed?
Tell us. We update this page whenever the network surface changes — and the last commit message goes in /changelog.