Bim — Chrome Extension

What we collect, and why.

Makata Studio SASMedellín, Colombia devs@makata.tvQuestions and deletion requests Last updatedJuly 10, 2026

Short version

We collect

Your name, email, and the comments you write. Nothing about the pages you visit unless you leave a comment there.

We use it for

Showing your comments to teammates and routing them to Slack if you configure that.

We share it with

Supabase (our database) and Slack (if you connect it). No one else.

To delete your data

Email devs@makata.tv. We'll remove everything within 7 days.

01

Who we are

Bim is built and operated by Makata Studio SAS, a digital design studio based in Medellín, Colombia. This extension is a tool for design and development review sessions.

Questions about this policy: devs@makata.tv

02

What we collect

Account information. When you sign in with Google, we receive your name, email address, and profile photo. This is used to identify you within your team's workspace.

Comments. The text you write, the URL of the page where you write it, and a reference to the specific element you anchored the comment to.

Slack connection. If you connect a Slack workspace, we store the OAuth access tokens and bot credentials needed to post comments to that workspace.

Local preferences. Per-site on/off settings and authentication tokens are stored locally in chrome.storage on your device. We do not see this data.

We do not track which pages you visit. We do not read the content of pages. We do not record clicks, keystrokes, or any behavioral data outside of the extension panel itself.

03

How we use it

  • Showing your comments to other members of the same workspace
  • Keeping you authenticated across sessions
  • Routing comments to Slack if you configure a channel for the project
  • Associating comments with the correct page and element so they can be re-anchored on future visits

We do not use your data for advertising, profiling, analytics, or any purpose outside the above.

04

Who we share it with

Supabase. Our database and authentication provider. Comment data, user accounts, and workspace configurations are stored on their infrastructure. Supabase is SOC 2 Type II certified. Data is stored in the US East region by default.

Slack. If you connect a Slack workspace, comment text is sent to Slack's API to be posted in the channel you configure. This transfer is initiated by you when you set up the Slack integration.

Google. Authentication is handled via Google's OAuth 2.0 flow using the chrome.identity API. We receive the profile data described in Section 02 and store it in our database.

We do not sell data. We do not transfer data to any other third party.

05

How long we keep it

Comments stay in our database until you delete them from the panel or request account deletion. Your account and all associated data are deleted within 7 days of a verified deletion request to devs@makata.tv.

Local data stored in chrome.storage is cleared automatically when you uninstall the extension.

06

Your rights

You can delete any comment you wrote at any time from the extension panel. You can disconnect the Slack integration from Settings. You can request full account deletion by emailing devs@makata.tv.

If you are in the European Economic Area, you have rights under the GDPR including access, rectification, erasure, portability, and objection. Contact us at the address above to exercise any of these.

07

Changes to this policy

If we make a material change to what we collect, who we share with, or how long we keep it, we'll update the date at the top of this page and notify active users by email. Minor clarifications won't trigger a notification.