Privacy Policy

Last updated: September 2, 2026·Effective: September 2, 2026·Contact: admin@cortexdesci.xyz

This policy applies to cortexdesci.xyz, the Cortex DeSci Miner Chrome extension, the Cortex DeSci smart contracts, and all related services (collectively, “the Service”). Cortex DeSci (“we”, “our”, “us”) is designed as a local-first, user-controlled platform. We do not use analytics, do not track browsing history, and do not run any server that fingerprints users.

1. Scope & Overview

The Service helps researchers and crypto-native users extract structured scientific knowledge (“triplets”) from open-access academic papers and submit them to the Cortex DeSci on-chain knowledge graph, earning $CXS rewards. This policy describes what data the Service collects, where it is stored, what is sent to third parties, and what we explicitly do NOT do.

2. Information We Handle

2.1 Stored locally on your device (chrome.storage.local)

Local storage is sandboxed per extension and is not accessible to websites, other extensions, or Cortex DeSci. You can erase all of it at any time via Chrome's “Remove extension” action or by clicking Reset inside the Extension settings.

2.2 Stored only in session memory (chrome.storage.session)

2.3 Website (cortexdesci.xyz) data

2.4 On-chain data (public and permanent)

All knowledge triplet submissions are recorded on a public blockchain and are intentionally public. This includes subject-predicate-object triplets, source paper references, timestamps, and your wallet address.

Submissions are written to Robinhood Chain (chain ID 4663) as transaction calldata. Separately, once per day, Cortex DeSci copies the full contents of that day's accepted submissions into a single Ethereum mainnet transaction so the record remains readable if Robinhood Chain or our servers cease to exist.

Both copies include your wallet address. Public-chain data is, by nature, permanent and cannot be deleted, edited, or withdrawn — by you or by us. Do not submit anything you are not willing to publish permanently.

2.5 Not collected at all

The Service does NOT collect, transmit, or store any of the following:

3. What the Service Sends to Third Parties

3.1 To the Cortex DeSci indexer (api.cortexdesci.xyz)

When you submit a mined triplet, the extension POSTs to the indexer:

Purpose: record the mining submission for on-chain settlement and reward distribution. No data is stored beyond what is strictly required for reward settlement.

3.2 For AI extraction

To extract triplets, the extension sends the paper's title, abstract, and the sentences selected for extraction to a large language model. There are two paths, and which one is used depends on your settings:

In both cases the provider's own privacy policy governs what they do with the request. If you would rather we never see the papers you read, use your own key.

3.3 To blockchain RPC providers

To sign and broadcast mining transactions, the extension sends signed transactions to a JSON-RPC endpoint (default: https://rpc.mainnet.chain.robinhood.com, or a user-configured RPC). These providers may see your IP address and wallet address per standard RPC operation. You can point the extension at any RPC you trust, including your own node.

The daily Ethereum mainnet copy described in 2.4 is broadcast by Cortex DeSci from our own wallet, not from yours. It costs you nothing and requires no action from you.

3.4 To academic paper websites

Content scripts run only on the academic paper sites listed in the extension's manifest (PubMed, arXiv, bioRxiv, Nature, Science, Cell, etc.). The extension reads the current page's DOM to detect paper metadata (title, abstract, DOI). It does not send that metadata to any Cortex DeSci server on its own; it only does so when you click the Extract or Submit button, and only as part of a submission flow you authorized.

4. How We Use the Information

We do not sell your data. We do not share it with advertisers. We do not use it to profile you outside the stated reward-settlement purpose.

5. Permissions Requested by the Chrome Extension

PermissionWhy it's needed
storagePersist encrypted wallet, API keys, and user settings locally
alarmsSchedule periodic mining cycles while mining is enabled
activeTabRead the current paper page only when you invoke the extension
notificationsShow mining success / error notifications
host: api.cortexdesci.xyzSubmit triplets to the indexer
host: rpc.mainnet.chain.robinhood.comBroadcast signed transactions to Robinhood Chain
host: robinhoodchain.blockscout.comOpen your transactions in the block explorer
host: LLM providersOnly if you supplied your own key — calls go straight to the provider you chose (api.groq.com, api.openai.com, api.deepseek.com). Not used on the default path, where extraction goes through api.cortexdesci.xyz instead.
host: academic sitesExtract paper metadata from pages you open on the supported allowlist

We deliberately do not request <all_urls>, tabs, history, cookies, webRequest, downloads, or any other broad permission.

6. Data Retention

7. Security

8. Your Rights

You may:

Note: on-chain data (triplet submissions, wallet address) cannot be deleted due to the immutable nature of the blockchain.

9. Children

The Service is not directed at children under 13 and does not knowingly collect data from anyone under 13.

10. International Users

The extension runs entirely in your browser. Any data you submit to the Cortex DeSci indexer is processed on servers located in Germany (Hetzner FSN1, EU). By using the Service, users outside the EU consent to that transfer.

11. Changes to This Policy

We will update the “Last updated” date above whenever this policy changes. Material changes will be announced in the extension's update notes and on cortexdesci.xyz.

12. Contact

Questions, concerns, data requests: admin@cortexdesci.xyz

Website: https://cortexdesci.xyz