SyncSpot

View the Project on GitHub mikecrunch/syncspot-legal

SyncSpot — Privacy Policy

Last updated: August 18, 2026

SyncSpot (“the extension”) is a Chrome browser extension that lets you create and update contacts in your own HubSpot CRM from a LinkedIn profile or conversation you are viewing. This policy explains what data the extension handles and where it goes.

The short version: your CRM data moves in exactly one direction — from the page you are looking at, in your browser, to your own HubSpot account — and only when you ask it to. We never see, collect, store, or sell any of it. The extension sends nothing to us at all.

Who we are

SyncSpot is developed and maintained by an independent developer. Contact: mykhailo.pihosh@gmail.com

What the extension does

When you open a LinkedIn profile, SyncSpot reads the information already visible to you on that page (name, headline, job title, company, location, profile URL, profile photo) and shows it in a side panel. When you click “Add to HubSpot” or “Sync”, that information is sent directly from your browser to the HubSpot API (api.hubapi.com) using the HubSpot Private App token you created and pasted into the extension’s settings.

If you use the message features (manual “Sync to HubSpot” button in a conversation, or the optional auto-sync setting, which is off by default), the text of the currently opened LinkedIn conversation is sent to your HubSpot account as a logged communication on the matched contact.

Data the extension processes

Where data is stored

All settings and caches are stored locally in your browser using Chrome’s extension storage (chrome.storage.local). The extension has no backend of its own; the only data we hold outside your browser: nothing. All data stays in your browser and in your own HubSpot account.

Where data is sent

Your CRM data goes to exactly one place: the HubSpot API (api.hubapi.com), over HTTPS, authenticated with your own token, into your own HubSpot account. Beyond the LinkedIn page you are already on, the extension talks to no other host. LinkedIn pages are only read, never written to, and no data is sent to LinkedIn.

What we do NOT do

Your controls

Data subjects’ rights (GDPR/CCPA note)

LinkedIn profile information is personal data of the people whose profiles you view. You (and your organization) act as the data controller for whatever you choose to save into your CRM; SyncSpot is a local tool and does not itself retain that data. Please make sure your use of the extension complies with the privacy laws that apply to you.

Changes to this policy

If the extension’s data handling ever changes (for example, a future version adds new kinds of telemetry or a backend service), this policy will be updated and the “Last updated” date changed before the new version ships.

Contact

Questions or concerns: mykhailo.pihosh@gmail.com