BizHarvest Pro
Privacy Policy.
1. Overview
BizHarvest Pro ("Extension", "we", "us", or "our") is committed to maintaining the privacy and security of your personal data. This Privacy Policy details how data is handled when you install, access, or use the BizHarvest Pro Chrome Extension.
100% Client-Side Architecture
BizHarvest Pro operates strictly inside your local web browser. We do not collect, store, track, sell, or transmit your personal information or harvested lead data to any external servers operated by us.
2. Information Handled by Extension
A. Scraped Business Data
Public Details Extracted: Business names, categories, phone numbers, addresses, websites, operating hours, ratings, review counts, public emails, and social links (LinkedIn, Instagram, Facebook, X, YouTube, TikTok).
Storage & Transfer: Stored locally in browser's encrypted chrome.storage.local. Data is never sent to our servers and remains on your device unless explicitly exported or synced to your CRM.
B. Settings & Credentials
Extension Settings: Configuration settings (scraper delay, extraction toggles, UI theme, custom Webhook URL, user CRM tokens).
Security: API keys and tokens are stored locally and used strictly for direct HTTPS authentication between your browser and CRM provider (HubSpot, Pipedrive, Zoho, Salesforce).
3. Chrome Extension Permissions
activeTab
Verifies current tab is a valid Google Maps search page when clicking 'Scrape Current Maps Page'.
scripting
Injects scraper script (maps-scraper.js) into Google Maps tabs to read public DOM listing elements.
tabs
Programmatically opens a new Google Maps search tab when clicking 'Open Google Maps & Scrape'.
storage
Persists harvested leads, search history, custom field mappings, and settings locally in browser.
alarms
Periodic background keep-alive checks to prevent MV3 Service Worker termination during long sessions.
notifications
Displays native browser notifications when a background scrape session or batch queue finishes.
identity
Solely for optional user-initiated OAuth authentication when exporting leads directly to Google Sheets/Contacts.
http://*/* & https://*/*
Required for Deep Scanning (crawling public business sites for contact emails/socials) and direct CRM API sync.
4. Third-Party Integrations
- Webhook Integration: Pushes leads directly to your custom HTTP/HTTPS endpoint (Zapier, Make, n8n) via encrypted requests.
- CRM Sync (HubSpot, Pipedrive, Zoho, Salesforce): Pushes leads directly to your CRM instance using your private API keys over HTTPS REST APIs.
- Google Public DNS API (
dns.google): Free DNS MX record lookups for email validation. Domain names only; zero personal data sent. - Google OAuth2 (Sheets & Contacts): Direct token exchange with Google Identity services. No central proxy servers used.
We do not use third-party analytics, ad networks, telemetry trackers, or remotely hosted code.
5. Single Purpose & Remote Code Policy
- Single Purpose: BizHarvest Pro exists for the single purpose of "Local business data harvesting and lead generation from Google Maps".
- No Remote Code: All JavaScript code and libraries (including SheetJS for Excel export) are 100% bundled locally within the extension package. Zero scripts loaded from external CDNs.
6. User Data Control & Rights (GDPR & CCPA)
You maintain 100% control over all data harvested by the extension:
7. Children’s Privacy
BizHarvest Pro is a B2B productivity tool designed strictly for business professionals. We do not knowingly collect, request, or solicit personal information from children under the age of 13.
8. Changes to Policy
We may update this Privacy Policy periodically to reflect changes in extension features or regulatory requirements. Any modifications will be published here with an updated "Last Updated" date.