← CS2 Inventory

CS2 Inventory — Privacy Policy

This extension does not sell any personal information, and it collects none unless you choose to pay for a plan.

There is no server operated by this extension's developer. Your inventory and your Steam sign-in are never sent to the developer or to any third party.

What is stored, and where. For each Steam account you sign in, the extension stores two things in your browser's local extension storage, on your own device:

  1. An index of that account's CS2 inventory — item names, which storage unit each item is in, and when each was first and last seen.
  2. A Steam sign-in token, obtained when you scan the QR code.

It also keeps a list of the accounts you have signed in (their names and SteamIDs), so you can switch between them.

None of it leaves your device. All of it is removed when you uninstall the extension. A sign-in can be deleted at any time with "Forget this sign-in", and an account with everything stored for it with "Remove this account".

What the extension connects to. Valve's servers (steamcommunity.com, api.steampowered.com, *.steamserver.net), to read your inventory and sign you in; and raw.githubusercontent.com, to download the public CS2 item schema used to name items. No request carries anything about you beyond what Steam already requires to answer it.

If — and only if — you press "Prices", the extension asks your permission to also fetch a public price list from prices.csgotrader.app. That request downloads a file of item prices and sends nothing about you or your inventory. Decline it, or never press the button, and the extension never contacts that host.

Plans and payment. Paid plans are tied to an email address. If you choose to sign in or upgrade, the extension contacts the developer's plans server, a Supabase project at *.supabase.co. It stores your email address (to send you sign-in codes) and your subscription: which plan, its status, and when it renews or ends. Payments are taken by Stripe, acting as merchant of record, which receives your email address and payment details under its own privacy policy. Your Steam sign-in, SteamID and inventory are never sent to either. The developer uses the email and subscription only to provide the plan and answer support requests. On the free plan, without signing in, the extension never contacts the plans server.

Your Steam credentials. The extension never receives your Steam password or your Steam Guard code. Signing in happens by QR code, approved in the Steam mobile app. The resulting sign-in appears in your Steam device list and can be revoked there at any time.

Contact: open an issue at https://github.com/p1etran/cs2_inventory/issues.