VegaHed
Legal

Privacy Policy

Last updated: July 10, 2026

VegaHed (“we”, “our”) is a personal knowledge vault: you save links, we fetch their metadata, categorise them with AI and make them searchable — for you. This page explains what data we handle, why, and the choices you have. It covers the website (vegahead.com), the app (app.vegahead.com) and the VegaHed browser extension.

What we collect

The browser extension

The extension only acts when you use it. When you save a page it reads that page’s title, descriptive meta tags and icon references (roughly 1 KB) and sends them to our API so we can skip re-fetching the page. It does not track your browsing, does not read page content beyond the metadata above, and stores no tokens — it uses the same signed-in session as the website.

AI processing

To auto-categorise a save, the URL and its fetched title/description are sent to Google’s Gemini API. They are used to pick a category and are not used by us to train models.

Third-party services

Cookies

We set one essential cookie: your session (httpOnly, used to keep you signed in). Theme preference is kept in your browser’s local storage. Advertising cookies, if any, come from Google AdSense as described above.

Retention & deletion

Your records stay until you delete them. Public short links expire after 7 days. Password reset tokens expire within an hour. Deactivating your account (Settings → Danger Zone) disables sign-in and deletes your saved records. For full account erasure, contact us.

Security

Passwords are hashed with bcrypt, sessions are signed JWTs in httpOnly cookies, all traffic uses HTTPS, and every data query is scoped to your account. No system is perfectly secure, but we follow current good practice and fix reported issues promptly.

Contact

Questions or requests: anhkhoa.wm@gmail.com. We’ll update this page as the product evolves and change the date above when we do.

← Back to home