Privacy policy for Alora - Insurance Quote Autofill
Alora - Insurance Quote Autofill by alora insurance
https://alora.now/privacy
Alora Browser Extension
This section applies to the Alora Browser Extension (“Extension”), available for Google Chrome, Mozilla Firefox, and Microsoft Edge. The Extension auto-fills insurance quote forms on carrier websites using data from your Alora risk ledger. The same privacy practices apply regardless of which browser you use.
Data Collected: The Extension accesses personally identifiable information (name, date of birth, address, email, phone number), authentication credentials (API token stored locally via chrome.storage), location data (street address, city, state, zip code from your risk ledger), and website content (form field labels and page text on carrier sites to detect fields and scrape quote results).
How Data Is Used: Your risk ledger data is fetched from the Alora API and used solely to auto-fill insurance application forms on carrier websites you visit. Quote data scraped from carrier result pages is sent back to your Alora account for comparison. No data is sold, shared with third parties, or used for advertising.
Data Storage: The Extension stores only your API authentication token and selected risk entry ID locally using your browser's built-in storage API (chrome.storage on Chrome/Edge, browser.storage on Firefox). No personal information is cached locally. All risk ledger data is fetched on-demand from the Alora API and exists only in memory during the autofill session.
Data Transmission: Data is transmitted securely via HTTPS between the Extension and the Alora API (alora.now). The Extension does not transmit data to any other servers or third parties.
Permissions: The Extension requires storage (to save your auth token), activeTab (to read form fields on the current page when you click autofill), scripting (to inject the autofill content script), and host permissions for specific insurance carrier domains (to run on carrier quote pages). These permissions are consistent across all supported browsers (Chrome, Firefox, Edge).
User Control: You can disconnect the Extension at any time by removing it from your browser (Chrome, Firefox, or Edge). You can revoke the API token from your Alora account settings. No data collection occurs without your explicit action (clicking the autofill or save quote button).
Browser-Specific Notes: On Firefox, the Extension declares data collection permissions as required by Mozilla's Add-on policies (personallyIdentifyingInfo and websiteContent for core autofill functionality, technicalAndInteraction as optional for debugging). On Chrome and Edge, equivalent disclosures are made through the respective Web Store data practices declarations. The actual data handling is identical across all browsers.