Plain-English privacy

Your data stays yours

Otto runs entirely in your browser. Here is exactly what that means — no legalese maze.

Last updated: June 24, 2026

The short version

What Otto can access

Otto connects to the inbox providers you choose — Gmail and Outlook/Hotmail — using each one's official sign-in. You can link up to five inboxes at once. For each, Otto requests permission to read and tidy mail:

Otto uses these to read the message that contains your verification code and, once the code has been read, to move that email to your Trash. You can switch this tidy-up off in Settings. Otto never sends email as you, and Trashed mail stays recoverable in your account.

What Otto does with it

Strictly one thing: find your 2FA code and fill it in. That means:

Where your data lives

On your computer, in your copy of Chrome. Otto has no database and no backend.

Data security

We take reasonable measures to keep your information safe:

Data retention & deletion

Otto keeps data only as long as it is needed to do its job, and no longer:

Google API compliance

Otto's use of information from Google APIs follows the Google API Services User Data Policy, including the Limited Use requirements.

Staying in control

You can cut off Otto's access whenever you like from your account's connected-apps settings — for example Google or Microsoft. Uninstalling the extension removes its access and deletes all of its local data too.

Questions?

Email the developer directly at [email protected].