Firexport のロゴ

FirexportPrivacy Policy

Privacy Policy

このプライバシーポリシーは英語版のみ提供しています。

Last updated

This policy explains what the Firexport browser extension (“Firexport”, “we”) and its website firexport.dev collect, why, and who receives it. Questions or requests: jerry@firexport.dev.

Summary

  • The files you export and anything you copy are created in your browser. We never upload them.
  • What Firexport reads to export your Authentication users (including their email addresses and phone numbers), security rules and indexes stays in your browser. Analytics about those exports carry only counts.
  • Firexport sends usage analytics to Mixpanel, including the email address signed in to the Firebase Console and the address of the console page. Only when a Firestore export seems to have gone wrong do they also include up to 3 rows from it.
  • Licenses and payments go through Lemon Squeezy. We never see your card details.
  • We don’t sell your data, use it for advertising, or share it with anyone other than the services in section 4.

1. What stays in your browser

  • To create an export, Firexport reads what the Firebase Console page shows (Firestore query results, Authentication users, security rules or indexes), along with the data the console loads for them. This data stays in that tab and is gone when you reload or close it. Firexport never uses your Firebase credentials and never calls Firebase on its own.
  • Authentication users include your users’ email addresses, phone numbers, names and sign-in details. Firexport keeps only what it puts in the file or shows in the user details card: never password hashes or salts, and not what you type in the search box. Your users’ data leaves your browser only in a file you save or a user you copy to your clipboard. It is never sent to us or anyone else.
  • Firexport reads security rules from the console’s editor without using your clipboard.
  • The Read meter counts the Firestore reads the Firebase Console makes in your browser, by cause, database and collection. The counts stay in your browser for up to 30 days and are never sent anywhere.
  • Firexport keeps your license key, settings, recent queries, Read meter counts, a random installation ID, and analytics not yet sent in your browser’s extension storage. Your license key is also synced to your other signed-in browsers, so your license works there.
  • Uninstalling Firexport removes all of this from your browser.

2. What we collect

Usage analytics

Firexport sends usage analytics to Mixpanel so we can tell whether it works and where people get stuck between installing it and exporting. They are identified by a random installation ID and include:

  • Installation and device: when Firexport was installed, its version, your browser, operating system, screen size and the language of the Firebase Console.
  • Approximate location: your IP address, which Firexport looks up through ipify and Mixpanel uses to estimate your country, region and city.
  • Firebase Console page: the page’s address and title, which include your Firebase project ID and, on Firestore pages, the collection path and query.
  • Firebase Console account: the email address of the Google account signed in to the console. It is also saved on the Mixpanel profile for your installation.
  • How you use Firexport: which parts of it you open, your plan, which settings you have turned on, how many recent queries you keep (the number, not the queries), and for each export the format and options, row counts, how long it took, whether it worked, and how many values of each type it had (the types, not the values). At installation, how many Firebase Console tabs were open (the number only).
  • License and purchase: your license key and activation ID, if you have a license, and the order details Lemon Squeezy returns when you activate it (order ID, product, price and purchaser email).

For exports of Authentication users, security rules and indexes, and for copying a user from the user details card, the analytics carry only counts and whether it worked: never your users’ email addresses, phone numbers, names or IDs, the text of your rules, or the collections and fields of your indexes.

When an export seems to have gone wrong

If Firexport finds that a file exported from Firestore data may not match the data in the console, the analytics for that export also include up to 3 affected rows, the matching original documents and their IDs, so we can find out what went wrong. These rows contain whatever is stored in those documents. Exports of Authentication users, security rules and indexes never include rows.

Pages Firexport opens on firexport.dev

  • After you install, if no Firebase Console tab is open, your browser opens a short tour that runs Firexport on sample data, not yours. It records in Mixpanel how far you get in the tour.
  • After you uninstall, your browser opens a goodbye page. It records the removal in Mixpanel and offers an optional survey. If you answer, we store your answers, and your email address if you choose to give it, in our Firestore database on Google Cloud (Firebase). We use that email only to reply to you.

Firexport gives both pages your installation ID and basic installation details (such as the install date, extension version, browser and language), never your email address, so that what they record joins your installation’s analytics. The tour page keeps these in that browser tab until you close it.

Feedback form

If you send feedback from the Firexport toolbar popup or from firexport.dev/feedback, we store your message, the topic you picked, your email address if you choose to give it, and the language of the page, in our Firestore database on Google Cloud (Firebase). From the popup, Firexport adds its version, your browser and your installation ID, so we can look into what happened; in Firefox, the installation ID is left out if you turned off “technical and interaction data”. It never adds your Firebase Console email or the console page address. We use your email only to reply to you. A message you have started but not sent stays in your browser until you send it.

Website

firexport.dev uses Google Analytics, which sets cookies to measure visits. See how Google uses this information. The tour and goodbye pages don’t load it.

Email

If you email us, we keep the conversation so we can answer you.

3. How we use it

  • to make exports and licenses work
  • to find and fix problems, such as rows missing from an exported file
  • to understand which features are used, where people get stuck between installing and exporting, and why people remove Firexport
  • to measure purchases
  • to answer you when you contact us

We don’t sell data, use it for advertising, or use it to determine creditworthiness.

4. Who receives it

Only these services, and only so they can provide their service to us:

  • Mixpanel (United States) stores usage analytics.
  • ipify tells Firexport your public IP address.
  • Lemon Squeezy is the merchant of record for licenses. When you buy, it collects your name, email, billing address and payment details under the Lemon Squeezy privacy policy. When you enter a license key, Firexport sends it to Lemon Squeezy to validate, activate or deactivate it.
  • Google Analytics measures visits to firexport.dev.
  • Google Cloud (Firebase, Seoul, South Korea) stores uninstall survey answers and feedback messages.

5. How long we keep it

  • Analytics and uninstall survey answers: for as long as we need them to understand how Firexport is used and why people remove it.
  • Emails and feedback messages: for as long as we need them to answer you and improve Firexport.
  • What Firexport reads from a Firebase Console page: until you reload or close that tab.
  • What Firexport keeps in your browser: until you uninstall it. Read meter counts are kept for up to 30 days.

6. Your choices and rights

  • In Firefox, turn off “technical and interaction data” for Firexport (when installing or in about:addons). Firexport then sends no analytics, and the pages it opens send none either.
  • Chrome has no equivalent setting, and Firexport has no switch of its own. You can uninstall it, or ask us to delete your data.
  • To delete your data, email jerry@firexport.dev with the Firebase Console account email or purchase email you used. We delete the analytics, survey answers and feedback linked to it and confirm when it is done. You can also ask for a copy of your data, or ask us to correct it.
  • If you are in the EEA or the UK: we process license data to perform our contract with you, and analytics based on our legitimate interest in keeping Firexport working and improving it. You can object to that processing by contacting us, and you have the right to complain to your data protection authority. Your data is stored in the United States by Mixpanel and in South Korea on Google Cloud, and processed by Lemon Squeezy wherever it operates.

7. Security

Everything Firexport sends leaves your browser over HTTPS. Only the developer can access the Mixpanel, Lemon Squeezy and Google Cloud accounts that hold it.

8. Children

Firexport is a developer tool and is not directed at children under 13, or under 16 in the EEA. We don’t knowingly collect their data.

9. Changes to this policy

When what Firexport collects changes, we update this page and the date at the top. Significant changes are also noted in the changelog.

Contact

Firexport: jerry@firexport.dev