Legal
Privacy Policy
Last updated September 7, 2026
What SnagTabs is
SnagTabs is a restock-alert service made up of a website (snagtabs.com), a Discord community, and a Chrome extension. For every member, the extension listens for restock signals and opens a browser tab to the matching retailer product page. Snag+ members can additionally opt into checkout automation ("Missions") — see the "Checkout automation" entry below for exactly what that stores and where.
Information we collect
- Discord account info. When you sign in, we use Discord OAuth to receive your Discord user ID and username. We never see or store your Discord password.
- Membership tier. We check which membership role(s) your Discord account holds in our server (Snag Basic, Snag+, or neither) and store that tier so the site and extension know what you're entitled to.
- Extension session token. After sign-in, the extension stores a SnagTabs-issued token in Chrome's local extension storage (`chrome.storage.local`) to authenticate with our servers. This token is not your Discord password or Discord OAuth token, and it can be revoked at any time if your membership tier changes.
- Operational diagnostics. The extension reports small operational events back to us — for example, that a restock tab was opened, that its launch capacity is full, or a periodic health/self-check signal. These events describe extension behavior, not the pages you visit or their content.
- Local Restocks preferences (optional). If you opt into the Local Restocks feature, we store the ZIP code, search radius, and retailers you choose so we can match nearby in-store restock signals to your preferences.
- Checkout profile (optional, Snag+ only). If you set up a checkout profile to use Missions, we store the name, shipping address, phone number, email, and last 4 digits of the card you enter on the Profiles page in our database, so a triggered Mission knows where to ship. We do not store your full card number, expiry, or CVV there.
- Encrypted local wallet (optional, Snag+ only). To actually run a checkout, the extension needs your full card number, expiry, and CVV somewhere it can read them at the moment of purchase. If you enter this in the extension's options page, it's encrypted (AES-256-GCM, keyed to a master password you choose) and stored only in your browser's local extension storage on your own device — never on our servers, never visible to us. The extension uses it solely to fill in the retailer's own checkout form when a Mission you configured triggers; you can remove it at any time from the options page.
- Subscription payment. Snag Basic and Snag+ subscriptions are billed through Whop, our third-party payment processor. SnagTabs does not receive, process, or store your card number or other subscription payment details — see "Encrypted local wallet" above for the separate, optional card you may give the extension for Missions checkout, which works differently and stays on your device.
What we don't collect
- Your general browsing history outside the retailer pages the extension opens.
- The content of pages you visit, including retailer account or checkout details.
- Your Discord password, or any Discord bot token or client secret.
- Your subscription payment details (handled entirely by Whop) or, on our own servers, your card number, expiry, or CVV for Missions checkout — that stays encrypted, locally, on your own device. See "Encrypted local wallet" above.
How we use this information
We use the information above to: verify your membership tier, deliver restock alerts to the extension and website, open the correct retailer tab when a signal fires, run a Mission's shipping details when you've configured one, and monitor the reliability of the auto-open and checkout-automation systems (for example, detecting when a signal failed to open a tab, or a checkout run failed partway, so we can investigate).
Third parties we rely on
- Discord — for account sign-in and membership role checks. See Discord's own privacy policy for how they handle your data.
- Supabase — hosts our database and authentication.
- Fly.io — hosts the realtime service that pushes restock alerts to the extension.
- Vercel — hosts the SnagTabs website.
- Whop — processes Snag Basic and Snag+ subscription payments.
- Zippopotam.us — if you use the optional Local Restocks feature, your browser sends the ZIP code you entered directly to this free, third-party geocoding service to center the map. SnagTabs does not control this service and it operates under its own terms.
Data retention and deletion
You can sign out of the extension at any time, which clears your locally stored session token. To request deletion of your account and associated data, email us at SnagTabs@gmail.com.
Children's privacy
SnagTabs is not directed at children under 13, and we do not knowingly collect information from them.
Changes to this policy
If we make material changes to this policy, we'll update the date at the top of this page.
Contact
Questions about this policy or your data: SnagTabs@gmail.com