Privacy Policy

Haberdashery (iPhone app) and Haberdashery Sync (Chrome extension).
Last updated: 16 August 2026.

The short version

Neither of these has an account, a server, or any analytics. There is nowhere for your data to be sent, because nothing was built to receive it.

Your bookmarks live on your own devices. What you save, what you tag, what you write in a note, and whatever the app works out about your pictures all stays on the phone in front of you, or in a folder you chose on your own computer.

What this policy covers

Haberdashery is a bookmark library for iPhone. It is installed directly rather than distributed through the App Store.

Haberdashery Sync is a Chrome extension that copies your saved posts from X, Instagram and Threads into a folder on your own computer. The two are designed to work together, but neither requires the other.

This policy is specific to these two products and is separate from the general policy for The Solana Labs at thesolanalabs.com/privacy-policy/.

The iPhone app

What it stores, and where

Everything you put into Haberdashery is written to the app's own storage on your device: the links you save, their titles and text, any photos or video kept for offline viewing, your tags, notes, collections, and the results of any on-device analysis.

That storage is private to the app and its share extension. No other app can read it. Deleting Haberdashery deletes all of it.

What it connects to

When you save a link, the app fetches it the way a browser would, in order to build you a usable card — the title, the author, the cover image, the readable text of an article, and any attached photos or video.

Those requests go directly from your phone to the site you saved, or to that site's own media servers. Depending on what you saved, that may include:

Those sites see an ordinary request from your device, exactly as they would if you had opened the link yourself. There is no server of ours in between, and no record of the request is kept anywhere but on your phone.

On-device intelligence

If you turn on automatic tagging or summaries, the app uses Apple's own on-device frameworks — Vision, for recognising what is in an image and any text within it, and Apple Intelligence for writing summaries.

This runs entirely on the phone's own processor. Your images and text are not uploaded for analysis, not to us and not to anyone else. On a device that cannot support these features they are simply unavailable; there is no cloud fallback.

iCloud

The app does not sync your library to iCloud. Cloud syncing is switched off in the build you have, and the app does not hold the entitlement that would let it run.

The only way iCloud is involved is if you point the app at a sync folder that happens to live in iCloud Drive. Apple's iCloud Drive then syncs those files between your own devices under your own Apple Account, governed by Apple's privacy policy rather than this one. The app reads files from that folder; it does not send them anywhere.

The share extension

When you share a link into Haberdashery from another app, iOS hands the extension that one link and whatever text came with it. The extension writes it into the same private storage the app uses, and receives nothing else about the app you shared from.

The Chrome extension

What it reads

While you are on your own saved-posts page on X, Instagram or Threads, signed in as yourself, the extension reads the post data your browser has already loaded in order to display that page. Per saved post that means its text, its author's name and handle, the date it was posted, its link, and the addresses of any attached photos or video.

It reads this only on x.com, twitter.com, instagram.com, threads.com and threads.net, and only while a sync you started is running. It requests access to no other site.

Where that goes

Into a folder on your own computer that you pick yourself, through Chrome's File System Access API. Chrome asks your permission before the extension can write anywhere, and you can withdraw it whenever you like. The files are ordinary JSON — you can read, move or delete them without the extension being involved.

What it keeps inside Chrome

Two things, both stored locally through chrome.storage.local: your settings, meaning the folder you chose and your Instagram handle; and the IDs of posts already exported, so a later run stops when it recognises posts it has seen instead of re-reading your whole list every time. Clearing the extension's data from the sync console removes both.

Your credentials

The extension never sees, asks for, or stores your password for any site. It reads only what your own signed-in browser is already displaying. It cannot log in as you, and does not try.

What is never done

Deleting everything

iPhone app. Delete the app; its storage goes with it. Individual bookmarks, collections and downloaded media can also be deleted inside the app at any time.

Chrome extension. Use "Clear stored data" in the sync console, then remove the extension from Chrome. Files already written to your sync folder belong to you — delete that folder if you want them gone.

Children

Neither product is directed at children, and neither collects information from anyone.

How you can check any of this

The Chrome extension is a handful of unminified JavaScript files with no build step. Its manifest requests access to five domains and no others, which means it has nowhere to send your data even if it wanted to — that absence is enforced by the browser, not by a promise.

Changes

If this policy changes, the date at the top changes with it. Material changes are noted in the app's release notes and the extension's store listing.

Contact

The data controller is THE SOLANA LABS (PRIVATE) LIMITED, CUIN 0347376, incorporated in Pakistan.

Registered office: Minhaj Chowk, Saghar, Talagang 48150, Pakistan.
Office: Street No 7, Shah Khalid Colony, Rawalpindi 46200, Pakistan.

Email: [email protected]