GitHub Smart Downloader

Local-first by design.
Private by default.

GitHub Smart Downloader does not run a backend for your repository contents, does not sell data, and does not use telemetry. The extension fetches from official GitHub endpoints and prepares ZIP archives inside your browser.

Effective date
June 24, 2026
Product
GitHub Smart Downloader Chrome extension
Contact
serdar@serdardundar.dev

01 / Plain-language summary

What this policy covers

This Privacy Policy explains how GitHub Smart Downloader handles data when you use the Chrome extension and this product website. It covers repository downloads, selected files, GitHub tokens, browser permissions, official GitHub endpoints, and Chrome Web Store privacy requirements.

Short version: repository contents stay between GitHub, your browser, and your local downloads folder. We do not upload repository contents to a Thaleris server because no such download backend is used by the extension.

02 / Data handled

Information the extension handles

GitHub Smart Downloader handles only the information needed to provide its single purpose: downloading GitHub repositories, folders, files, or selected paths as ZIP archives from the browser.

GitHub page and repository information

The extension reads the GitHub page you are viewing so it can identify repository owner, repository name, branch or ref, visible file and folder paths, selected rows, and GitHub download targets. This happens locally in your browser.

Repository files and ZIP contents

When you start a download, files are fetched from official GitHub endpoints and packaged in the extension's offscreen document using JSZip. Repository contents are not uploaded to Thaleris or any third-party download service.

GitHub Personal Access Token

If you choose to add a GitHub token, the extension encrypts it with AES-GCM before storing it in Chrome extension storage. The token is used only to authenticate requests to official GitHub endpoints for private repositories or higher API limits.

Settings and local state

The extension stores preferences such as theme, accent color, naming policy, exclusion packs, memory limits, recent job state, and API rate-limit metadata in Chrome extension storage on your device.

Website visits

This website is a static product site. It does not include analytics, advertising pixels, account login, or tracking cookies. Your browser and hosting provider may process normal technical request data such as IP address, user agent, and requested URL to deliver the page.

03 / Use and sharing

How information is used

The extension uses data only to provide or improve the user-facing download features described on the Chrome Web Store listing and inside the product interface.

  • To detect the current GitHub repository, folder, file, branch, and selected paths.
  • To request repository metadata, file contents, archives, and rate-limit data from GitHub.
  • To build ZIP archives locally in your browser and save them through the browser download manager.
  • To remember extension settings and encrypted token data on your device.
  • To show progress, partial failures, LFS pointer notices, submodule notices, and rescue-mode status while downloads run.

Sharing and transfers

GitHub Smart Downloader does not sell user data and does not transfer repository contents, selected paths, or tokens to Thaleris servers. Data is shared only with the services required to provide the extension's single purpose:

  • github.com
  • api.github.com
  • raw.githubusercontent.com
  • codeload.github.com
  • chrome.storage and chrome.downloads on your local browser

04 / Browser permissions

Why the extension requests permissions

storage

Stores local settings, encrypted GitHub token data, rate-limit metadata, and temporary job state.

downloads

Saves generated ZIP files through the browser download manager.

offscreen

Runs ZIP generation in a Manifest V3 offscreen document so packaging can happen away from the GitHub page UI.

GitHub host permissions

Allows the extension to read GitHub repository pages and fetch files or metadata from official GitHub endpoints.

05 / Storage, retention, and security

How data is protected

GitHub Smart Downloader follows a local-first model. Most data remains inside your browser profile and can be cleared by removing extension data, changing extension settings, or uninstalling the extension.

  • GitHub tokens are encrypted before storage using AES-GCM.
  • Repository files are held only as needed for download preparation, cache reuse, or browser download handoff.
  • Temporary archive cache entries and job state are local to your browser environment.
  • The extension communicates with GitHub over HTTPS.
  • No Thaleris employee or contractor has access to your repository download contents through the extension.

06 / Chrome Web Store Limited Use

Chrome Web Store User Data Policy

The use of information received from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements.

GitHub Smart Downloader's handling of user data is limited to providing and improving its single purpose: downloading GitHub repositories, folders, files, and selected paths as ZIP archives directly from the browser.

  • Allowed use: data is used only for the extension's user-facing download, ZIP packaging, settings, authentication, and progress features.
  • Allowed transfer: data is sent only to official GitHub endpoints when necessary to fetch repository metadata or content, or as otherwise required by law, security, or user-directed browser behavior.
  • No advertising: data is not used for advertising, retargeting, credit decisions, or user profiling.
  • No human reading: humans do not read repository contents, selected paths, or token data through this extension.

07 / Children and sensitive data

Children's privacy and sensitive content

GitHub Smart Downloader is a developer utility and is not directed to children under 13. The extension does not intentionally collect personal information from children. Users should not use the extension to download or process repositories containing data they are not authorized to access.

08 / Your controls

How to manage or delete local data

  • Remove a GitHub token in the extension settings.
  • Clear extension storage through your browser settings.
  • Delete downloaded ZIP files from your local file system.
  • Uninstall the extension to remove its local extension data from the browser profile, subject to browser behavior.
  • Email serdar@serdardundar.dev with privacy questions or requests.

09 / Changes

Policy updates

This policy may be updated as the extension, website, browser platform, or legal requirements change. When it changes, the effective date on this page will be updated. Continued use of the extension after an update means the updated policy applies to future use.

10 / Contact

Questions

If you have questions about this Privacy Policy or GitHub Smart Downloader's data handling, contact:

serdar@serdardundar.dev

GitHub Smart Downloader is not affiliated with GitHub. GitHub is a trademark of GitHub, Inc.