Privacy Policy
What the AmzDL extension can see, what leaves your browser, and what we store on our servers.
Last updated: 2026-07-27
This policy covers the AmzDL browser extension and the AmzDL website.
Contact: support@amzdl.com
The short version
The product pages you browse never reach our servers. AmzDL reads a page, downloads the media, and packages it entirely inside your own browser. We do not receive the products you looked at, the files you saved, or the reviews you exported.
What we do store is the minimum needed to run an account: your email address, and what you have paid for.
What the extension can access, and what it does with it
The extension asks for these browser permissions, and this is what each one is for:
- Access to Amazon product pages — to find the images, videos, and review text the page is showing. This happens in your browser. The page content is not transmitted anywhere.
- Access to Amazon image and video servers — to download the files themselves, directly from those servers to your computer.
- Downloads — to save the finished folder or archive to your download directory.
- Storage — to remember your settings and your signed-in state on your own device.
- Offscreen documents — a technical requirement for building archives in the browser; Chrome extension service workers cannot do this on their own.
- activeTab and scripting — to draw the AmzDL panel when you click the toolbar icon. These grant access only at the moment you click, and only to that tab.
The extension does not read pages other than the marketplace pages listed in its manifest, does not track your browsing, and contains no advertising or third-party analytics code.
What we store on our servers
If you never create an account, we store nothing about you. The free features work without one.
When you create an account:
- Email address and display name. The name is derived from your email address unless you change it.
- Password, stored only as a salted hash. We cannot read it.
- Sign-up IP address, browser locale, and referral source, used for fraud prevention and to understand where sign-ups come from.
- Connected browsers — for each browser you sign in from, the browser family (e.g. "chrome"), the extension version, and when it was last seen. This is what lets you see and revoke your connected browsers. It does not include a device fingerprint.
- Subscription and order records — which plan you bought, when, and its status.
How many files you download, and from which products, is counted only on your own device. That number never leaves your browser.
Payments
Payments are processed by Creem, which acts as the Merchant of Record. You enter your card details on Creem's systems, not ours.
We never see or store your full card number. We receive from Creem only what we need to grant access: a transaction reference, the billing email, the amount, and the subscription status. Creem's handling of your data is governed by their own privacy policy.
Other processors we use
- Cloudflare — hosting, and the Turnstile anti-bot check on our sign-up and password-reset forms. Turnstile is designed to work without tracking cookies and without profiling users across sites.
- Resend — transactional email only (password resets, receipts). We do not run marketing email campaigns.
We do not use advertising networks, and there is no third-party analytics or session-recording script on this website.
Cookies
We use cookies for one purpose: keeping you signed in. There are no advertising or cross-site tracking cookies on this site. Clearing them signs you out.
What we do not do
- We do not sell your personal information, and we do not share it for cross-context behavioural advertising.
- We do not use your data to train machine-learning models.
- We do not send marketing email unless you ask us to.
Sharing
We share personal data only with the processors listed above, only as needed to run the service, and only under contract. We may also disclose data where we are legally required to, or to establish or defend legal claims — and we will tell you when we are permitted to do so.
Retention
Account and billing records are kept while your account is open, and for up to seven years after it closes where tax and accounting law requires it. Everything else is deleted within 30 days of account closure.
Your rights
Depending on where you live, you may have the right to access, correct, delete, or export your personal data, to object to or restrict processing, and to withdraw consent.
You can delete your account yourself from Settings. For anything else, email support@amzdl.com — we respond within 3 business days and complete requests within 30 days. There is no charge, and we will not degrade your service for exercising these rights.
If you are in the EEA or UK and believe we have handled your data improperly, you may lodge a complaint with your local data protection authority.
International transfers
Our infrastructure runs on Cloudflare's global network, so your data may be processed outside your country. Where data leaves the EEA or UK, transfers rely on the appropriate safeguards, such as the European Commission's Standard Contractual Clauses.
Children
AmzDL is a business tool and is not directed at children. We do not knowingly collect data from anyone under 16. If you believe a child has given us personal data, email us and we will delete it.
Changes
We will update the date at the top of this page when this policy changes, and give notice by email or in the product before any material change takes effect.
Contact
support@amzdl.com