Privacy Policy for DinaSheet for Salesforce
Effective date: July 31, 2026
DinaSheet for Salesforce ("DinaSheet") is a Chrome extension that provides a spreadsheet workspace for data in a Salesforce organization where the user is already signed in. It can run user-requested Salesforce queries and reports, display and locally organize results, import local CSV or Excel files, and send user-confirmed record updates back to that Salesforce organization.
Data DinaSheet Handles
DinaSheet may handle the following data only to provide its user-facing spreadsheet features:
- Authentication information: the Salesforce
sidsession cookie for the organization where the user is already signed in. The extension reads this cookie locally to authenticate requests to that same Salesforce organization. - Salesforce account and identity data: the selected Salesforce host, organization ID, user ID, username, display name, language, and similar information returned by Salesforce APIs.
- Salesforce website and API content: object and field metadata, report metadata and results, query results, record IDs and field values, and update results requested by the user. This content may include personal data if the user's Salesforce organization stores such data and the user chooses to retrieve it.
- User-provided content: SOQL queries, selected report or object names, spreadsheet edits, and local CSV or Excel files opened by the user.
- Local preferences and rollback receipts: the selected language, sidebar width, and bounded per-organization update receipts containing update time, Salesforce object, record IDs, changed field names, and the prior and updated values needed to prepare a user-selected rollback.
DinaSheet does not collect browsing history, advertising identifiers, analytics, telemetry, mouse movement, scrolling behavior, or keystroke logs. It does not contain ads.
How Data Is Used
DinaSheet uses data only to:
- authenticate requests to the Salesforce organization selected by the user;
- run user-requested Salesforce queries, reports, schema lookups, and updates;
- render and operate the spreadsheet interface;
- import files selected by the user locally in the browser;
- retain bounded update receipts locally so the user can select recorded prior values, review them, and confirm a rollback update; and
- show the user which Salesforce organization is connected.
Data Sharing and Transfers
DinaSheet does not sell user data and does not use it for advertising, tracking, credit decisions, or profiling.
- Salesforce API requests and user-confirmed record changes are sent only to the user's selected Salesforce organization over HTTPS.
- Salesforce processes data under the user's or organization's account and its applicable terms and policies.
The Salesforce session cookie, cookie domain, and authorization header never leave the Chrome extension.
No data is sent to developer-operated servers. DinaSheet has no analytics or telemetry endpoint.
Storage and Retention
- UI preferences and per-organization update receipts are stored in Chrome extension storage on the user's device. Workbook files and sheet snapshots are not persisted. Update receipts retain only changed fields, are limited to the newest 50 successful update events and 2 MB per Salesforce organization, and are removed as older events exceed those limits or when the user clears extension storage or uninstalls the extension.
- The Salesforce session cookie remains managed by Salesforce and Chrome; DinaSheet does not copy it into persistent extension storage.
- Local CSV and Excel files are parsed in the browser. Opening a file does not upload it to the developer.
User Controls
Users choose which Salesforce organization, query, report, file, rows, and fields to use. Salesforce record updates, including rollback updates prepared from audit receipts, require explicit row selection, review, and confirmation. Users can remove local data by clearing Chrome extension storage or uninstalling DinaSheet.
Security
DinaSheet uses HTTPS for network requests and packages its executable JavaScript, HTML, and CSS with the extension. It does not execute remotely hosted code.
Limited Use Disclosure
DinaSheet's use of user data adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements. Data is used only to provide or improve DinaSheet's disclosed user-facing spreadsheet features, is not used for advertising, and is not made available for human reading except with the user's affirmative agreement for support, when necessary for security, to comply with applicable law, or after aggregation and anonymization for internal operations. DinaSheet currently performs no developer-operated analytics or telemetry.
Independent Product
DinaSheet is an independent product and is not affiliated with, endorsed by, or sponsored by Salesforce. Salesforce and Chrome are trademarks of their respective owners.
Contact
For privacy questions, contact the publisher using the verified contact email shown on the Chrome Web Store listing.