Privacy Policy for R2D2 Secure Authenticator

Last Updated: April 27, 2026

1. Introduction

R2D2 Secure Authenticator ("we," "us," or "the Extension") is committed to protecting your privacy. This Privacy Policy explains our data practices and emphasizes our commitment to transparency and user security.

2. No Data Collection (No Telemetry)

R2D2 was built with the principle of "Privacy by Design."

3. Data Storage and Encryption

Your security data (TOTP/HOTP secrets and account names) is stored exclusively on your local device.

4. Third-Party Services (Optional)

The Extension offers two optional features that interact with third-party services:

A. Google Drive Backup

If you explicitly enable Google Drive backup:

B. Time Synchronization

If you explicitly enable "Sync with Google":

5. Transparency and Open Source

R2D2 is 100% open source. Our code is available for public audit on GitHub at: https://github.com/pab10v/r2d2. We encourage users and security professionals to audit our implementation.

6. Permissions Justification

7. Changes to this Policy

We may update this Privacy Policy from time to time. Any changes will be reflected in the "Last Updated" date at the top of this document.

8. Contact

Since R2D2 is an open-source project, any questions or concerns regarding privacy can be addressed via GitHub Issues in our repository.