Privacy Policy
Last updated: March 20, 2026
Sillage Labs, Inc. ("Sillage," "we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and share information when you use our SaaS platform and Chrome extension (collectively, the "Services").
1. Information We Collect
1.1 Account Information
When you create an account or log in, we collect your name, email address, and workspace information. This data is used to authenticate you and provide access to the Services.
1.2 CRM Page Data (Chrome Extension)
When you use the Sillage Chrome extension on HubSpot or Salesforce, we extract the following data from the CRM pages you visit:
- CRM contact or lead record IDs — extracted from the page URL to identify the contact you are viewing.
- Email addresses — extracted from mailto links on the page to assist with contact lookup.
- LinkedIn profile handles — extracted from LinkedIn URLs on the page to assist with contact lookup.
This data is sent to the Sillage backend API to retrieve relevant buying signals, contact details, and company intelligence for the contact you are viewing.
1.3 Data We Do Not Collect
The Chrome extension does not collect:
- Browsing history or activity outside of HubSpot and Salesforce
- Keystrokes, form inputs, or passwords
- Cookies or tracking identifiers
- Any data from non-CRM pages
2. How We Use Your Information
We use the information we collect to:
- Authenticate your identity and provide access to the Services
- Look up and display buying signals, contact data, and company intelligence for the contacts you view in your CRM
- Display your lead list, lead statuses, and related information in the extension sidebar
- Process feedback you voluntarily submit
- Improve and maintain the Services
3. Data Storage
3.1 Local Storage (Chrome Extension)
The Chrome extension stores the following data locally in your browser using chrome.storage.local:
- Authentication tokens (JWT and refresh token) to keep you logged in
- User profile (name, email, workspace name) for display in the extension UI
- UI preferences (e.g., whether the sidebar icon is dismissed)
This data is stored locally on your device, isolated to the extension, and is not accessible by websites.
3.2 Server-Side Storage
Lead data, contact information, buying signals, and company intelligence are stored on Sillage servers hosted within the European Union (Amsterdam). The extension does not create or modify data in your CRM — it only reads identifiers to perform lookups.
4. Data Sharing
Your data is sent only to the Sillage backend API (api.getsillage.com) over encrypted HTTPS connections.
We do not:
- Use any third-party analytics, tracking, or advertising services in the Chrome extension
- Sell, rent, or transfer your data to third parties
- Load or execute any remote code in the extension
5. Chrome Extension Permissions
The Sillage Chrome extension requests the following browser permissions, each for a specific purpose:
- storage — to store authentication tokens and UI preferences locally in your browser
- activeTab — to detect when you are viewing a CRM contact page and display relevant lead data
- tabs — to detect single-page application navigation within HubSpot and Salesforce (URL changes without full page reloads)
- scripting — to inject the sidebar into the page when you open it from the extension popup
- Host permissions (HubSpot and Salesforce URLs) — to read CRM contact identifiers and inject the sidebar on CRM pages
6. Authentication and Security
- Login credentials (email and password) are transmitted over HTTPS and are never stored locally on your device
- JWT tokens are stored in
chrome.storage.local, which is isolated per extension and not accessible by websites - Tokens are automatically refreshed before expiry to maintain your session securely
- Single Sign-On (SSO) is supported via the Sillage web application at getsillage.com
7. Your Rights and Choices
- Log out at any time from the extension to clear all stored tokens and profile data from your browser
- Dismiss the sidebar icon — this preference is stored locally and persists across sessions
- Uninstall the extension to remove all locally stored data from your browser
- Request data access, correction, or deletion — contact us at hello@getsillage.com to exercise your rights under GDPR or other applicable data protection laws
8. Data Retention
We retain your account and lead data for as long as your account is active or as needed to provide the Services. Upon termination, Sillage will delete or anonymize your data in accordance with the terms outlined in our Data Processing Agreement.
9. Children's Privacy
The Services are intended for business use only and are not directed at individuals under the age of 16. We do not knowingly collect personal information from children.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy on this page with a revised "Last updated" date. Your continued use of the Services after such changes constitutes your acceptance of the updated policy.
11. Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at:
Sillage Labs, Inc.
1111b South Governors Ave
STE 40784
Dover, DE 19904, United States
hello@getsillage.com