Privacy Policy
This policy explains what Result Arrange handles, what leaves your browser, and who receives it.
Who we are
Result Arrange is made by BranchNode LLC, an Ohio limited liability company in the United States. BranchNode LLC is responsible for the personal information described here. You can reach us at hello@resultarrange.com.
What happens on a search page
On supported Google, Brave Search, Bing, and DuckDuckGo pages, the extension reads the page in your browser so it can find recognized results and apply the Prefer and Hide rules you have set. That reading and rearranging happens entirely inside Chrome, Brave, or Microsoft Edge, on your own computer.
Blocking works differently. Before a supported engine returns ordinary results, the
extension adds that engine's site-exclusion syntax to the query and navigates to the changed
search URL. Google, Bing, and DuckDuckGo use -site:; Brave Search uses
NOT site: and describes its operators as experimental. The changed query goes
only to the search engine you chose as part of the search request you were already making.
Result Arrange hides supported added exclusions in the search box by default; turn on "Show
full query" in the extension to display them where that option is supported.
After results load, Result Arrange also locally suppresses identifiable results from blocked sites that the engine still returns, including supported sponsored results. Unrecognized results and unsupported page sections are left unchanged. This additional suppression also happens only in your browser and is not sent to BranchNode.
Nothing from the search page or query is sent to us. Not your search terms, not the result titles or links, not the page itself, not the sites you go on to visit, and not your browsing history. The Block exclusions just described go only to Google, Brave Search, Bing, or DuckDuckGo as part of your search. We hold no copy of any of it, and we make no separate search request. What the selected engine does with the search is governed by that engine's terms and privacy policy.
What is stored in your browser
Your rules and settings
The sites you prefer, hide, or block, your Saved sets, and your display choices are stored using the browser's own extension storage. Chrome may synchronize them between matching Chrome profiles through Chrome Sync. Brave may synchronize them within a Brave Sync Chain when Extensions is enabled on every desktop. That storage belongs to the applicable browser profile or Sync Chain. We do not operate it and we do not receive it. Google or Brave's terms and privacy policy govern how that browser handles synchronized data.
When you are signed in to a Result Arrange account, your rules are encrypted before the browser stores them, using a key held for your account. To be precise about what that does and does not mean: it protects your rules inside browser synchronized storage, and it is not end-to-end encryption. Our server holds the wrapped key so it can be unlocked for a browser where you are currently signed in. Chrome Sync and Brave Sync are independent services; a Result Arrange account does not transfer the encrypted rule document between them.
Your sign-in details, if you have an account
If you sign in, the extension stores your email address, an identifier for your installation, and the credential that keeps you signed in, all in local browser storage. Signing out removes the session credential.
Accounts and Plus
You do not need an account to use Result Arrange. When the extension checks a trial or access state, our servers hold the installation records described below. An account adds an email address so Plus can follow you between browsers and a browser that signs back in can unlock encrypted rules Chrome has synchronized. We hold:
- your email address and an internal account identifier;
- the time you accepted the Terms of Service and Privacy Policy, and the effective-date version of each policy you accepted;
- an anonymous identifier for each installation, along with which browser and version it reports and when it was last in contact, so a trial can be given once and a subscription can be recognised;
- when your trial started and ends, and whether an account has already continued this installation's trial;
- your subscription and access state: the plan, whether it is active, when the current period ends, and whether it has been cancelled;
- when Stripe Checkout reported completion and the version of the automatic-renewal disclosure associated with that checkout;
- a reference to your customer record at our payment provider;
- a session record that identifies each signed-in browser and when its sign-in expires. It does not contain your searches, rules, or Saved sets;
- a wrapped encryption key that a signed-in browser uses to unlock your encrypted rules in Chrome; and
- counts of recent sign-in attempts per installation, so too many attempts cannot overload the sign-in system. These counts hold no email address and no IP address.
- a count and timestamps for recent data-download requests, which helps us keep the feature reliable and prevent excessive automated requests.
Payments
Plus subscriptions are sold through Link, a Stripe service. Sold through Link, LLC acts as the merchant of record: it runs checkout, handles your card, manages tax where applicable, issues receipts, and processes payments and refunds under its own terms and privacy notice.
We never see or store your full card details. What we receive back from Link and Stripe is the limited set we need to give you what you paid for: a customer and subscription reference, the status of that subscription, and the events that change it.
Sign-in emails
Signing in uses a one-time code sent to your email address. Supabase issues and checks the code. Cloudflare receives the first delivery attempt, and Resend receives the message only if Cloudflare cannot accept it before sending. The provider used for delivery handles your email address and the message for that purpose under its own terms.
We keep a limited delivery record to prevent duplicate sends and monitor reliability. It contains no email address or code.
We do not require or store passwords; the one-time code is the authentication method.
This website
The website is served by Cloudflare, which processes ordinary request information such as IP address, browser type, the page requested, and the time, in order to deliver the site and protect it from attack.
Cloudflare also provides cookie-free Web Analytics. Its beacon reports website page views, referring sites, country, device and browser type, page path, and load-performance measurements. It does not log query strings or use cookies or browser storage. Cloudflare describes Web Analytics as not collecting or using visitors' personal data. We use these reports only to understand whether the launch pages are being found and working well. They are not connected to extension activity, accounts, email addresses, searches, or rules.
There are no advertising trackers. Cloudflare may set a strictly necessary security or challenge cookie when it needs to protect the site. We do not use it to follow you across websites.
Service requests
Our service is hosted and protected by Cloudflare. When the extension checks a trial, account, or subscription, Cloudflare automatically keeps a short technical log of the request, such as its IP address, time, requested service path, and whether it succeeded. We use these logs only to keep the service working, troubleshoot failures, and protect it from abuse.
These logs contain no email address, searches, results, rules, or saved-site lists, and we do not connect them to your account. Cloudflare keeps them for no more than seven days.
Support
If you email us, Cloudflare receives and forwards the message to the mailbox we use to answer support requests. We receive your email address, whatever you write, and anything you choose to attach, and we keep it for as long as we need it to help you and to keep a record of the exchange. Please do not send passwords, card numbers, or personal information that is not needed to answer your question.
What we use information for
We use what we hold only to:
- run your account, your trial, and your subscription;
- send you sign-in codes and messages about your subscription;
- process and support purchases and refunds through Link and Stripe;
- answer your support, privacy, and security requests;
- prevent fraud and abuse and keep the service secure; and
- meet legal, tax, and accounting obligations.
We do not sell personal information, and we do not share it for cross-context behavioural advertising.
You are not required to create an account. If you choose to create one, an email address is required for sign-in. The limited installation and access records described above are necessary to provide the trial and check access.
Chrome Web Store Limited Use
Our use of information obtained through Chrome APIs follows the Chrome Web Store User Data Policy, including its Limited Use requirements. Information is used only to provide and improve the single purpose of the extension. It is not sold, and it is not transferred or used for advertising or for creditworthiness or lending purposes. No human reads your search-page data, because that data never leaves your browser; the only information a person at BranchNode ever reads is what you deliberately send us yourself, such as a support email.
Who else handles information
We keep the list of companies involved deliberately short. The main providers are below, and each handles information only for the purposes described:
- Stripe and Link — checkout, payment, tax, refunds, and subscription records.
- Supabase — the account and authentication system, and our database.
- Resend — backup delivery of sign-in and account emails when Cloudflare cannot accept a message before sending it.
- Cloudflare — hosting and protection of this website and our service, cookie-free website traffic and performance analytics, delivery of sign-in and account emails, and forwarding mail sent to our support address.
- Google — Chrome Sync may hold your browser settings, and searches you make on Google go to Google Search.
- Brave — Brave Sync may hold your browser settings within a Sync Chain, and searches you make on Brave Search go to Brave Search.
- Microsoft — searches you make on Bing go to Bing. Result Arrange does not use a Microsoft or OneDrive settings provider in the Chrome Web Store edition.
- DuckDuckGo — searches you make on DuckDuckGo go to DuckDuckGo.
We may also disclose information to our professional advisers, or to an authority where the law requires it, or to a buyer if the business is ever sold. If the business changes hands, the information remains subject to this policy. We will tell you before a new owner uses it differently.
Google, Brave, Microsoft, or DuckDuckGo receives only the searches you make to its respective engine, including any Block exclusions the extension adds. If the browser's sync feature is enabled, its provider also handles the settings it synchronizes; rules belonging to a signed-in Result Arrange account are encrypted before they enter synchronized storage. BranchNode does not receive your searches or rule content, and we do not send them to our account, email, or payment providers.
Where information is processed
Result Arrange is offered in the United States and Australia. BranchNode is in the United States, and the companies listed above may process information in the United States and other countries where they operate.
These companies handle information under the service terms, privacy notices, and, where applicable, data-processing terms that govern the relevant service. Google Search, Chrome, Brave, Bing, Stripe, and Link may also handle information under terms that apply directly between you and them. Email hello@resultarrange.com if you want more information about a particular provider.
How long we keep things
- Your rules in browser storage: kept by Chrome, Brave, or Edge until you change or delete them, or remove the extension. When account deletion succeeds, the extension also asks the browser to remove that account's encrypted rule data, as described below.
- Account and subscription records: kept while your account exists. After you delete it, we delete the sign-in identity from Supabase, pseudonymise your email address, and retain a pseudonymised account record, an account-deletion record, and limited billing records only as long as reasonably needed for tax and accounting obligations, refunds, chargebacks, disputes, or legal claims. Link and Stripe keep their own transaction records under their retention obligations.
- Policy acceptance: the acceptance time and policy versions are kept with the account. After deletion, they may remain with the pseudonymised account record for the same limited recordkeeping purposes described above.
- Automatic-renewal consent: kept only for the period required by applicable recordkeeping law or reasonably needed for related refunds, disputes, or legal claims. After account deletion, it remains only with the pseudonymised billing record.
- Installation records with no account and no subscription: deleted 180 days after we last hear from that installation.
- Sign-in sessions: a session expires after 30 days without use, and the record is deleted 7 days after that.
- Sign-in, email-change, and data-download attempt counts: deleted 30 days after the period they cover ends.
- Our email delivery records: deleted 30 days after the message was sent. They contain no recipient address, subject, message, or code.
- Email-provider records: Cloudflare makes delivery and routing event metadata available for up to 31 days and may retain a sent-message preview for about seven days. Resend's standard email-data retention is 30 days.
- Service request logs: kept by Cloudflare for no more than seven days. They contain no email address, searches, rules, or saved-site lists.
- Website analytics: Cloudflare keeps unsampled beacon data for seven days and makes sampled aggregate reports available for up to six months.
- Support emails: kept only as long as we reasonably need them for support and for our records.
Downloading your data
If you are signed in, open Account and plan in the extension and choose Download my data. Result Arrange creates one readable JSON file with the application records associated with your account: account and authentication identifiers, the policy acceptance time and versions, installations, sessions, trial and access history, customer, subscription, checkout-attempt, and transaction references, automatic-renewal acceptance time and disclosure version, account-protection activity, and any account-deletion request records. The extension also decrypts the Saved sets currently unlocked in that browser and adds them to the file locally. Your Saved-set contents are not uploaded to the Result Arrange servers while the file is made.
The file does not expose credential secrets or hashes, provider session tokens, encryption keys or ciphertext, one-time codes, or keyed code/address hashes. Those values protect the account and are not useful as a readable record. Short Cloudflare request logs and our recipient-free email-delivery records are not linked to an account, so there is no account key by which the download could select them. The downloaded file itself is not encrypted; keep it private.
Deleting your account
You can delete your account from the extension at any time. If it has an active subscription, we cancel future renewal first. Deletion then removes your email address and sign-in identity, destroys the key used to unlock the account's rules, unlinks its installations, and revokes access. We act on it immediately, and in any case within 30 days.
We keep the pseudonymised account, deletion, policy-acceptance, and limited billing records described above. Those records no longer contain your email address or rule content. After the server destroys the key for your encrypted account rules, the extension asks the browser to remove that account's encrypted rule data from synchronized storage. Chrome Sync or Brave Sync may take time to propagate that removal to another browser installation, but a delayed copy cannot be unlocked after the server key is destroyed. Link and Stripe keep transaction records for the period their obligations require.
Security
The design does most of the work: what is never collected cannot be exposed. Beyond that, everything travels over encrypted connections, our server stores hashes rather than the secrets for Result Arrange credentials, your account rules are encrypted in your Chrome's storage. Please know that no security measure is perfect.
Children
Result Arrange is not directed to children under 13, and we do not knowingly collect their personal information. If you believe a child has given us information write to us, as we intend to remove it.
Your rights
Depending on where you live, you may have the right to ask for a copy of the information we hold about you, to correct it, to have it deleted, to limit how it is used, or to object to its use. You also have the right not to be treated differently for exercising those rights.
The Download my data button is the easiest way for a signed-in user to see and save the application records associated with that account, together with their Saved sets. You may also email hello@resultarrange.com to exercise a right, ask for help with the download, or ask about a support conversation. A support email remains in the email conversation where you sent or received it; we can provide our copy if needed.
Changes to this policy
Result Arrange is actively being built, so this policy will change as the product does. When it does, we will post the new version here with a new date at the top, and we will keep the previous version available so you can see what changed.
If a change materially expands how we collect, use, or disclose personal information, we will provide any advance notice and request any consent required by applicable law. We may also give notice by email or in the extension when that is appropriate. Other changes, including changing a provider that performs a purpose already described here, may take effect when the updated policy is posted.
We will not apply a materially broader use to information already collected without first providing notice and obtaining consent where applicable law requires it.
Contact
Email hello@resultarrange.com for any privacy question. For security reports, please use the subject line "Security" so it reaches us quickly.
BranchNode LLC · 6545 Market Ave. North, Ste 100, Canton, OH 44721, United States