Effective date: 3 September 2026
Contact: cxl41332184@gmail.com
Drop is designed so that the developer does not receive or host your content.
Drop may process your provider account identifier, display name, email address and optional profile image; OAuth access credentials; notes, links, file names, files, previews, timestamps and synchronization metadata; and retention settings.
Local data stays in the browser profile. Google data is stored in Drop's Google Drive application-data folder. Microsoft data is stored in Drop's OneDrive application folder, normally /Apps/Drop/. Drop has no intermediary content server. Data is used only for authentication, local display, synchronization, download, deletion, account switching, and retention. Drop does not sell data, use it for advertising or profiling, or allow humans to read your content.
Delete items in Drop, sign out and clear local data, uninstall the extension, delete the provider application folder, and revoke provider access as needed. Revoking access stops future access but does not itself delete existing files.
Drop uses provider OAuth flows and HTTPS APIs. Material changes will be published with a revised effective date. Questions can be sent to cxl41332184@gmail.com.