Lico Privacy Policy
Last updated: July 1, 2026
This Privacy Policy describes how the Lico browser extension ("Lico", "the extension", "we", "us") handles your data. By installing and using Lico, you agree to the practices described below.
Short version: Lico does not collect, transmit, or sell your personal data to the extension developer or any third party. All your data stays on your device.
1. Data We Do Not Collect
Lico does not collect, store, or transmit any of the following to the extension developer or any analytics/ advertising services:
- Personally identifiable information (name, email, address, etc.)
- Browsing history or search queries
- Bookmark contents (bookmarks are read locally and displayed on the start page; they are never uploaded)
- Tab information (tab data is processed locally in the browser)
- Device identifiers or location data
- Analytics, telemetry, or crash reports
2. Data Stored Locally
Lico stores all configuration and user content locally on your device using the browser's built-in storage (localStorage and chrome.storage). This includes:
- Start page layout and appearance preferences
- User-created notes and widgets
- AI assistant API endpoint URL and API key (entered by the user, stored locally)
- Plugin configurations and user-installed plugin files
- Bookmarks cache (read from the browser's native bookmarks, never uploaded)
This data never leaves your device unless you explicitly use a feature that sends data to a service you configured (see Section 3).
3. Third-Party Services (User-Configured)
Lico supports an AI assistant feature that calls OpenAI-compatible chat completion APIs. Important points:
- The API endpoint URL and API key are configured by you in the extension settings.
- When you send a message to the AI assistant, that message is sent directly from your browser to the API endpoint you specified.
- Lico (the extension developer) does not intercept, store, relay, or have access to these messages.
- The data handling of your chosen AI provider is governed by that provider's privacy policy.
If you do not configure an AI API endpoint, no data is sent anywhere.
4. Permissions Justification
Lico requests the following browser permissions. Each is used only for its stated purpose:
- storage — Save your preferences, notes, and settings locally.
- bookmarks — Read and display your browser bookmarks on the start page.
- tabs — Open, close, switch, and query tabs from the start page.
- scripting — Inject content scripts into pages to extract metadata (title, favicon) for display on the start page, on user action.
- activeTab — Access the current tab for user-initiated actions like screenshots.
- debugger — Use the Chrome DevTools Protocol to capture tab screenshots and perform advanced tab control, only on explicit user action.
- <all_urls> (host permission) — Required to call user-configured AI API endpoints (any URL), inject content scripts, and capture screenshots via CDP.
5. Android Device Mirroring (scrcpy)
Lico includes an optional Android device mirroring feature powered by WebUSB and the scrcpy protocol:
- Device connection uses the browser's WebUSB API — you must explicitly select and authorize your device.
- Video and control data flows directly between your browser and your Android device over USB.
- No mirroring data is transmitted to the extension developer or any remote server.
6. Plugin System
Lico supports user-installed plugins (`.Licoplugin` files). Plugins run inside a sandboxed iframe with no direct access to the page or your data. Plugins you install are stored locally and executed on your device. Lico does not download or execute remote plugin code.
Download sample plugin (偷你ctrl键喵.Licoplugin)
7. Data Security
Since all user data is stored locally in the browser and no data is transmitted to the extension developer, there is no server-side data breach risk associated with Lico. Your AI API key is stored locally; we recommend you do not share your browser profile.
8. Children's Privacy
Lico is not directed at children under 13 and does not knowingly collect any data from children.
9. Changes to This Policy
If we update this Privacy Policy, we will revise the "Last updated" date above. Continued use of the extension after changes constitutes acceptance of the updated policy.
10. Contact
If you have questions about this Privacy Policy, you can contact the developer at: feedback@mikumoon.cn