Context-menu script
The manifest declares this script for all web pages, so the browser may show a broad site-access permission. The script supports “Inspect element”: only after a right-click does it compute a selector for the chosen element and pass it to the extension. It sends no page content and makes no network requests.
Analysis after your action
Local tools, the accessibility audit, inspector and overlay start only after you choose a feature. The extension does not start a cloud scan on its own.
API key in the extension
The key is saved in extension-local storage and authenticates requests to app.cometweb.io. The inspected page script does not receive it.
Data sent to Insight
When you fetch results, Lens sends your API key and the current page URL. Creating a task or muting a finding also sends the selected finding and text you enter. Form field values are not sent.
Two separate export choices
Browser measurements need separate, revocable consent. A local accessibility result stays in the browser until you select a project and confirm its export.
No browsing history
Lens does not read browsing history. The extension stores your API key locally and sends it only to app.cometweb.io with Insight requests.