Keyra
Ana sayfa

Keyra tarayıcı eklentisi gizlilik politikası

Son güncelleme: 11 Ekim 2026

Kısaca: Eklenti kişisel veri toplamaz, internete göndermez, satmaz ve kimseyle paylaşmaz. Analitik, takip ya da reklam yoktur. Eklenti yalnızca aynı bilgisayarda çalışan Keyra masaüstü uygulamasıyla konuşur.

Bu politika neyi kapsar

Bu politika Chrome, Edge, Brave, Opera ve Firefox için yayımlanan Keyra tarayıcı eklentisini (“eklenti”) kapsar. Eklenti tek başına çalışmaz; aynı bilgisayara kurulu Keyra masaüstü uygulamasına bağlanır.

Eklentinin işlediği veriler

Eklenti, yalnızca senin seçtiğin formları doldurmak ve yeni girişleri kaydetmeyi önermek için şu verileri işler:

  • Girişler: kullanıcı adı, parola ve doğrulama (TOTP) kodu. Doldurma ya da kopyalama istediğinde Keyra uygulamasından o an alınır.
  • Kartlar ve kimlikler: kart bilgileri, ad, e-posta, telefon ve adres. Yalnızca ödeme ve adres formlarını doldurmak için alınır.
  • Açık sekmenin adresi: o siteye ait girişleri bulmak ve hangi çerçevelerin doldurulabileceğine karar vermek için.
  • Bir giriş ya da kayıt formuna yazdığın bilgiler: giriş yaptıktan sonra bunları Keyra'ya kaydetmeyi ya da parolayı güncellemeyi önermek için.

Sitelerdeki giriş listeleri parola içermez. Parola yalnızca doldurmayı seçtiğin tek kayıt için gönderilir ve yalnızca aynı siteye ait çerçevelere iletilir.

Veriler nereye gider

Yalnızca aynı bilgisayardaki Keyra uygulamasına, yerel bağlantı (http://127.0.0.1) üzerinden. Kasan uygulamada, cihazında şifreli olarak saklanır. Eklenti bizim ya da başka birinin sunucusuna hiçbir veri göndermez.

Uygulama bu bağlantıyı yalnızca senin onayladığın eklentiye açar. Eşleştirme sırasında Keyra'daki kodu kontrol edip onaylarsın ve eklentiye 256 bitlik bir anahtar verilir. Keyra kilitliyken eklenti kasanın içeriğini göremez, yalnızca kilitli olduğunu bilir.

Tarayıcıda saklananlar

  • Kalıcı (chrome.storage.local): Keyra ile eşleştirme anahtarı ve eklenti ayarların (otomatik doldurma seçenekleri, parola üretici tercihleri, kaydetme önerisinin kapalı olduğu siteler).
  • Geçici (chrome.storage.session, yalnızca bellekte, tarayıcı kapanınca silinir): kaydetmek isteyip istemediğine karar vermeni bekleyen giriş ve bu oturumda üretilen parolalar. Üretici geçmişini istediğin an temizleyebilirsin.

Kasan tarayıcıda saklanmaz. Site ikonları tarayıcının kendi yerel ikon önbelleğinden gösterilir; bunun için hiçbir siteye ya da hizmete istek yapılmaz.

Pano

Eklenti panoya yalnızca bir kopyalama düğmesine bastığında ya da doğrulama kodu sayfaya doldurulamadığında yazar. Kopyalanan değerler panodan otomatik olarak silinmez.

Asla yapmadıklarımız

  • Analitik, telemetri, hata raporu ya da takip kodu kullanmayız.
  • Verilerini satmayız, kiralamayız ve üçüncü taraflara aktarmayız.
  • Verilerini reklam, profil çıkarma ya da kredi değerliliği belirleme için kullanmayız.
  • Uzaktan kod yüklemeyiz. Eklentinin bütün kodu paketin içindedir.

Kontrol sende

  • Bağlantıyı eklentinin ayarlarından ya da Keyra'da Ayarlar → Tarayıcı bölümünden istediğin an kaldırabilirsin.
  • Kaydetme önerisinin kapalı olduğu siteleri eklenti ayarlarından düzenleyebilirsin.
  • Eklentiyi kaldırdığında tarayıcıda sakladığı her şey (eşleştirme anahtarı ve ayarlar) silinir.

İzinler neden gerekli

  • Tüm sitelere erişim: giriş, kayıt ve ödeme formlarını bulmak, alan içi menüyü göstermek ve seçtiğin bilgiyi doldurmak için.
  • 127.0.0.1 erişimi: aynı bilgisayardaki Keyra uygulamasıyla konuşmak için.
  • tabs ve webNavigation: açık sekmenin adresini ve aynı siteye ait çerçeveleri bulmak için.
  • storage: eşleştirme anahtarı ve ayarlar için.
  • contextMenus: sağ tık menüsündeki Keyra komutları için.
  • clipboardWrite: kopyalama düğmeleri için.
  • favicon: site ikonlarını tarayıcının yerel önbelleğinden göstermek için.

Değişiklikler

Bu politikayı değiştirirsek güncel hâlini bu sayfada yayımlar ve yukarıdaki tarihi güncelleriz.


Keyra browser extension privacy policy

Last updated: October 11, 2026

In short: the extension does not collect, transmit, sell or share personal data. There is no analytics, tracking or advertising. The extension only talks to the Keyra desktop app running on the same computer.

What this policy covers

This policy covers the Keyra browser extension (“the extension”) published for Chrome, Edge, Brave, Opera and Firefox. The extension does not work on its own; it connects to the Keyra desktop app installed on the same computer.

Data the extension handles

The extension handles the following data only to fill the forms you choose and to offer saving new logins:

  • Logins: username, password and verification (TOTP) code. Fetched from the Keyra app at the moment you fill or copy them.
  • Cards and identities: card details, name, email, phone and address. Fetched only to fill payment and address forms.
  • The address of the current tab: to find the logins for that site and to decide which frames may be filled.
  • What you type into a sign-in or sign-up form: to offer saving it to Keyra, or updating the password, after you sign in.

Login lists shown on websites never contain passwords. A password is sent only for the single entry you choose to fill, and only to frames that belong to the same site.

Where the data goes

Only to the Keyra app on the same computer, over a local connection (http://127.0.0.1). Your vault is stored encrypted by the app, on your device. The extension sends no data to our servers or to anyone else's.

The app accepts this connection only from an extension you approved. During pairing you confirm a matching code in Keyra and the extension receives a 256-bit key. While Keyra is locked, the extension cannot see vault contents, only that it is locked.

What is stored in the browser

  • Persistent (chrome.storage.local): the pairing key for Keyra and your extension settings (autofill options, generator preferences, sites where save prompts are turned off).
  • Temporary (chrome.storage.session, in memory only, cleared when the browser closes): a login waiting for your decision to save it, and passwords generated in the current session. You can clear the generator history at any time.

Your vault is not stored in the browser. Site icons are shown from the browser's own local icon cache; no request is made to any website or service for them.

Clipboard

The extension writes to the clipboard only when you press a copy button, or when a verification code cannot be filled into the page. Copied values are not cleared from the clipboard automatically.

What we never do

  • We do not use analytics, telemetry, crash reporting or tracking code.
  • We do not sell, rent or transfer your data to third parties.
  • We do not use your data for advertising, profiling or to determine creditworthiness.
  • We do not load remote code. All of the extension's code ships inside the package.

Your control

  • You can remove the connection at any time from the extension's settings or in Keyra under Settings → Browser.
  • You can edit the list of sites where save prompts are turned off in the extension's settings.
  • Uninstalling the extension deletes everything it stored in the browser (the pairing key and settings).

Why the permissions are needed

  • Access to all sites: to find login, sign-up and payment forms, show the in-field menu and fill the entry you choose.
  • Access to 127.0.0.1: to talk to the Keyra app on the same computer.
  • tabs and webNavigation: to read the current tab's address and find frames that belong to the same site.
  • storage: for the pairing key and settings.
  • contextMenus: for Keyra commands in the right-click menu.
  • clipboardWrite: for the copy buttons.
  • favicon: to show site icons from the browser's local cache.

Changes

If we change this policy, we will publish the new version on this page and update the date above.