1.Who is responsible
The extension is made and run by Selan UAB, a private limited liability company registered in Lithuania under company code 308105472. For anything about your data, including a request to see or delete it, write to info@selan.ai — it reaches a person, not a queue.
2.What the extension does
It lets an AI agent you connect use your own Chrome: Claude Code on your computer, a
Selan remote agent, or another MCP client. The agent works through Selan's MCP gateway at
mcp.selan.ai, and each thing it asks for — open a page, read it, click,
type, scroll, close it — is a command the extension carries out in a tab group called
Selan, which the extension opens itself.
There is no Selan sign-in in the extension. Connecting an agent is what links your browser: the gateway's connect page hands the extension a single-use token, and the extension registers with a secret it makes and keeps, which it presents on every call. We store only a digest of it.
3.What it reads
The extension reads a page only when a connected agent asks it to, and only:
- in tabs it opened in the Selan group, and tabs those pages opened — never a tab you opened, even one you drag into the group;
- on the sites you allow in Settings (none until you add them, or every site if you choose);
- never on your own computer or local network:
localhost, private and link-local addresses, and.localand.internalnames are refused in every mode; - on ordinary web pages: never
chrome://pages, other extensions,file:ordata:addresses or the Chrome Web Store, and never in an incognito window.
A read returns, for the tab and for any frames in it from allowed sites:
- the page's title and address;
- its visible headings, and the first 6,000 characters of its visible text;
- its visible links: their text and where they go;
- its visible buttons and form fields: what kind each is, its label, and what it holds.
What a field holds is left out for password fields (including one a "show password" button has turned into plain text), every field in a form that holds a password field, fields named, marked or drawn as a secret such as a one-time code or a payment card, and file pickers. Every other field is read as it stands, so a half-filled form is read half-filled. The other commands answer less: the address and title of the agent's tabs, or how far a page is scrolled. Text an agent types comes from the agent, in its command.
What it never reads: your cookies, saved passwords, browsing history, bookmarks, or any tab that is not the agent's. It does not ask Chrome for the cookies, history or bookmarks permissions, and has no way to see saved passwords. It does ask for access to all sites, only so that it can work in whichever pages an agent opens; Chrome tells it about events in other tabs too, such as one tab opening another, and it ignores every one that does not come from its own tabs.
The tabs are in your own Chrome, so sites see you there as they always do: signed in wherever you are signed in. An agent acting in them acts with your accounts on those sites. The extension does not read the cookies that make that so; Chrome sends them with each request, as it would for you.
4.What it is used for
One thing: carrying out the commands your connected agents send, and giving each result to the agent that asked for it. It is not used for advertising or analytics, not used to build a profile of you, not sold, and we do not use it to train any model.
The extension contains no analytics, no tracking and no error reporting. It talks to two places only: Selan's gateway and Firebase.
5.Where it goes
| What | Where | For how long |
|---|---|---|
| A command: what to do, and the address to open or the text to type | Firebase Realtime Database, under your browser's id, where Firebase's rules let only your browser read it | Until the extension answers it, the agent stops waiting for it, or you unlink |
| Its result, page content included | Selan's gateway, which hands it to the agent that asked | Until the agent that asked has it; one nobody collects, at most a day (section 6) |
| Whether your browser is online | Firebase Realtime Database | The last state stays, after an unlink too |
Page content goes to the agents you connected, and to nobody else. Each agent's commands reach only the browser it connected to, and each result goes back only to the call that asked for it. From there it is part of that agent's conversation, so it also reaches the AI model the agent uses, under that provider's terms — see section 5 of our Privacy Policy.
For a Selan remote agent, that conversation is its run transcript. Members of your Selan company can open it, and Selan keeps it for 90 days. What an agent does with what it read — summarise it, save it, post it somewhere — is up to the agent and its instructions, as with any other tool it has.
Selan's gateway runs on Google Cloud in Belgium, with its database in Warsaw; the Firebase Realtime Database is in Belgium. The extension signs in to Firebase Authentication, also run by Google, with a token the gateway makes for your browser's id, which carries nothing else about you.
6.What is kept, and for how long
In your Chrome
- The link
- Your browser's id, its secret, its name and when it was linked. Until you unlink.
- Results waiting to be sent
- A result is kept until the gateway has it, so that a restart does not lose it, and is then removed.
- Recent commands
- The last 20: what kind, whether it worked, and when — no addresses and no page content. Shown in Settings, and cleared when you unlink.
- The agent's tabs
- Their addresses, so the extension can tell its own tabs apart after Chrome restarts. Cleared when the tabs are released or the group is closed.
- A diagnostic log
- The last 80 events, such as a page it blocked and that page's address. It never leaves your computer.
- Allowed sites
- Kept in Chrome's sync storage, so if Chrome Sync is on, Google copies the list to your other Chrome browsers. Selan never sees it.
At Selan
- Your browser
- Its id, its name ("Chrome on macOS" or the like, until you rename it), a digest of its secret, and when it was linked and unlinked. No email address, no Selan account and no company. Unlinking revokes it for good, and the record is deleted a day later.
- Each connected agent
- The name its app registered under, the address its sign-in returns to, and the IP address it registered from, which limits how many registrations one address can make; and the grant that ties it to your browser, with when it was made. A grant ends when you disconnect that agent or unlink, or once it goes 30 days unused. Its tokens are stored only as digests, and expire after eight hours (access) and thirty days (refresh).
- Commands and their results
- What kind each command was, its result — page content included, since that is how it reaches the agent — and when it was sent and answered. The result is removed as soon as the agent that asked has it; one nobody collects, and the rest of the record, is deleted once a day old (the clean-up runs whenever the gateway sends a command, so on a quiet day it can stay a little longer). A command's own instructions — the address to open, the text to type — are never written to this database, because typed text can be a password.
- Connect and link attempts
- The IP address each attempt to connect an agent or link a browser came from, kept for about an hour to limit how many one address can make, then deleted.
- The connect page's cookie
-
One cookie, set by
mcp.selan.aiwhile you connect an agent, tying the steps of that connect to the browser that started it. It expires after ten minutes.
Our logs get one line per command: your browser's id, which agent's grant sent it, the kind of command, whether it worked, the failure code if it did not, and how long it took. Never the address, the typed text or the result.
Beyond the deletions above, nothing is deleted automatically yet — the same position as the rest of Selan, described in our Privacy Policy. Write to info@selan.ai and we will delete your browser's records and confirm when it is done.
7.Your controls
- Allowed sites, in Settings: limit the extension to the sites you list. Pages and frames off the list are blocked before they load; a page you allow can still send requests to other sites itself.
- Pause, in the popup: every command is refused until you resume.
- Stop & release, in the popup: closes the agent's tabs once the command in flight is done. It leaves Pause as you set it, so pause first if you want nothing new to start.
- Disconnect, beside each connected agent in Settings: ends that agent's access, and only that agent's. Each is shown with the address its sign-in returns to, which the agent cannot fake.
- Unlink, in Settings: ends every agent's access, revokes your browser at Selan, ends its Firebase sessions and clears its waiting commands. In Chrome it closes the agent's tabs and forgets the link, the waiting results and the recent commands.
- Uninstall: removes the extension and what it keeps in Chrome. Unlink first: uninstalling alone does not tell Selan, so your browser stays linked and each agent's grant lasts until it goes 30 days unused, though with nothing listening every command fails.
An agent connects only through the gateway's connect page, opened in this Chrome. Unless you opened it yourself, for an agent on this computer or a Selan remote agent, the page asks "Let agent (address) use this browser?" and connects only when you click.
8.Chrome Web Store Limited Use
The use of information received from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements.
The data the extension handles is used only for its single purpose, letting agents you connect work in the Selan tab group, and is transferred only to carry that out: to Selan's gateway, to Firebase, and to the agents you connected. It is not sold, not used for advertising, and not used to determine creditworthiness or for lending.
9.Your rights
Under the GDPR you may ask for access to your personal data, correction, deletion, restriction or portability, and you may object to processing based on legitimate interest. Write to info@selan.ai and we will respond within one month. You may also complain to your data protection authority; in Lithuania that is the State Data Protection Inspectorate (VDAI).
10.Changes
We will update this page when what the extension reads, sends or keeps changes, and change the date at the top.
11.Contact
Selan UAB, Lithuania, company code 308105472: info@selan.ai.