Koodle / Legal
Koodle Bridge — Privacy Disclosure
Last updated: September 5, 2026
What Koodle Bridge does
Koodle Bridge requests website access when you install it so Koodle can read and navigate websites through your browser session without separate setup for each site. Chrome displays this permission before installation. Browser tasks remain subject to your organization's site restrictions and Koodle's sensitive-action approval controls. A visible banner is shown during task page reads.
When an approved task initiates a browser download, Koodle Bridge observes the download identifier, filename, and completion state so it can verify the requested action. It does not import or read the downloaded file unless you separately choose an import flow.
What data is collected and where it goes
Page content read by the extension is sent solely to your organization's Koodle workspace (your configured Koodle API endpoint), where it is used to answer your requests, is access-controlled to your team, and is retained under your workspace's data-retention settings.
The extension stores locally on your device: your device pairing credential, your endpoint configuration, and the site allow-list. Credentials embedded in URLs are redacted server-side before storage.
Limited use
We do not sell page content, do not use it for advertising, do not use it to train generalized AI models, and do not allow humans to read it except with your permission, for security review, or as required by law.
Use and transfer of information received from the extension adheres to the Chrome Web Store User Data Policy, including its Limited Use requirements.
Your controls
You can restrict website access in Chrome's extension settings, pause Bridge, or revoke a paired device from Settings → Extensions in Koodle. Restricting access can prevent browser tasks from completing. Your administrator can restrict reachable sites through managed policy or disable browser access for a workspace or the whole organization. Restricted sites and sign-in credentials remain protected even when Chrome has granted website access.
Uninstalling the extension removes its locally stored pairing credential, endpoint configuration, and cached allow-list from your browser.
Enterprise deployments
When your organization force-installs Koodle Bridge via enterprise policy, your administrator may pin the extension's API endpoint and site allow-list through Chrome managed storage. If that managed policy cannot be read, the extension fails closed and denies all commands.
Contact
Questions about this disclosure or our data practices: support@koodle.ai.