Effective date: August 3, 2026 · Applies to the DynoMerge browser extension and the DynoMerge standalone web app. Published by Everything Virtually LLC.
DynoMerge runs entirely in your browser. We do not collect, transmit, store, sell, or share any of your data — because there is nowhere for it to go. DynoMerge has no servers, no analytics, no telemetry, no accounts, and no third-party services.
To generate documents, DynoMerge processes data locally on your computer: templates you load or create, CSV files you open, rows you capture from a Salesforce report page, and record data fetched from your Salesforce org. All merging happens in your browser's memory. Generated documents are saved only where you choose — your Downloads folder, or a record in your own Salesforce org when you click "Attach to record."
When you use the live-org features, DynoMerge reuses the Salesforce session from your existing browser login to call the Salesforce API directly from your browser to your org — the same approach used by popular admin tools like Salesforce Inspector. Your session token and your record data never pass through any DynoMerge system, because none exists. DynoMerge can never see more than your own Salesforce permissions allow: field-level security and sharing rules are always enforced by Salesforce itself.
Saved templates and settings are stored in your browser's local extension storage so they survive restarts. They stay on your device, are never synced to us, and are deleted when you remove the extension (or when you delete them individually).
The extension requests the minimum permissions its features need: side
panel (show the app next to Salesforce), tabs (detect which
Salesforce record or report you're viewing), cookies (reuse your own
Salesforce session for API calls, limited to salesforce.com/force.com),
scripting (read a report table off the page when you click "Grab this
report" — only on your click, only on Salesforce pages), and storage plus
unlimitedStorage (keep your saved templates on your device, without
Chrome's default size cap). Host access is limited to *.salesforce.com and
*.force.com.
If you are the person approving this extension for your org, there is a longer version: Browser permissions, explained covers each permission, what it does not allow, what DynoMerge deliberately does not request, and how to verify every claim yourself.
No analytics or usage tracking. No crash reporting. No advertising or ad identifiers. No selling or sharing of data (there is none to sell). No remote code: everything the extension runs ships inside the extension package reviewed by the Chrome Web Store.
DynoMerge is a business tool, not directed at children, and — consistent with everything above — collects no data from anyone of any age.
If a future feature ever changes this picture (for example, an optional hosted demo sandbox), we will update this policy before that feature ships and clearly label any mode in which data leaves your machine. The core promise will not change: the DynoMerge extension's document generation runs locally.
Questions: [email protected] · Everything Virtually LLC.