openOM

openOM extension - Privacy Policy

Last updated: 2026-08-18 · Publisher: Vervelio Labs

The openOM browser extension is local-first and deterministic. It reads offering-memorandum PDFs, verifies their embedded openOM data, and (in author mode) embeds broker-asserted data - all on your device. It contains no analytics, no tracking, no advertising, and no telemetry, and it sends no data to Vervelio Labs.

What the extension processes

The only network requests the extension makes

  1. Re-fetching PDF bytes from the page's own URL, to read/verify from the source (never by scraping the browser's PDF viewer).
  2. Fetching a .well-known mirror from the OM's stated domain, to verify domain-origin. This is a request to the broker's own site, carrying no personal data.
  3. Delivering a change-notification webhook - only to an endpoint you configure, when you choose to publish, signed with your configured key.

There are no other network requests. On-device extraction makes zero off-device requests (all inference runs locally, enforced by an automated egress-zero test). The extension never sends your PDFs, profile, or settings to Vervelio Labs or any third party.

Data sharing and retention

No data is shared with anyone. Data you enter stays in local extension storage until you remove it or uninstall the extension; uninstalling deletes its local storage.

Permissions

Contact

Questions: [email protected] · Source: GitHub