Extension privacy.
The Fizzwise Import Assistant connects your own signed-in Bomb Party back office to the Fizzwise desktop application on the same computer. It is independent software and is not affiliated with or endorsed by Bomb Party.
What the extension reads
On supported back-office pages, the extension reads reports and related invoices. Depending on the report, this can include customer names and order information, sales, commissions, inventory, purchases, rank, team or program data, and invoice contents. Imported report rows are not guaranteed to be anonymous.
When it runs
Manual import and “Sync everything” start when you click. Manual sync runs in a separate minimized back-office window and continues when the popup closes. Reopen the popup to check progress, stop after the current read, or retry unfinished items. An optional daily sync setting is off by default; if you enable it, the extension can open a minimized back-office window and import reports while your browser is running, your back-office session remains signed in, and the desktop app is reachable.
Where data goes
The extension requests reports from the back office using your existing browser session and sends imported data to the app through http://localhost on the same computer. It does not upload those report rows to a Fizzwise cloud database. Version 0.12.1 bundles its fonts locally, so opening its popup does not contact Google Fonts. Earlier 0.12.0 packages loaded Google Fonts and shared normal connection metadata with Google, but did not include reports in those requests.
The desktop application has separate hosted billing and AI features. This extension disclosure does not mean that every desktop feature stays on-device. Read the desktop data-flow notes before using Advisor or Insights.
Browser-local settings
The extension saves your local app port and pairing token, remembered report URLs, sync timestamps and progress, and daily-sync preference in Chrome’s local extension storage. It uses the browser’s existing signed-in session; it does not ask for or store your Bomb Party password. Treat the pairing token and invoice URLs as private.
Permissions
- activeTab: identify the current report when you interact with the extension.
- scripting: run the bundled report readers within authorized back-office pages.
- storage: keep the connection and sync settings on this browser.
- alarms: resume a sync you started if its background worker is interrupted, and schedule daily sync when you enable it.
- myoffice.bombparty.com: read reports, move between supported pages, and retrieve invoices using your existing session.
- localhost and 127.0.0.1: connect to the paired desktop application on your computer. Chrome host permissions do not limit access to a single port.
Your choices
Disable daily sync in the extension’s connection settings to stop scheduled imports. Remove the extension through your browser’s extensions page to remove its local settings. Removing it does not delete reports already stored in the desktop app.
The extension contains no advertising or analytics SDK. Imported reports are used for the import feature, not advertising. For setup help, visit the Import Assistant guide. Leave customer records and credentials out of any feedback.
When the desktop app’s optional “Share basic usage” setting is on, the app can share report categories and sync outcomes with PostHog through the Fizzwise service. Newer extension builds supply their version, sync mode and fixed reader-failure categories to the paired local app. They do not connect directly to PostHog or send report contents into analytics. Starting with desktop version 0.1.20, this setting is on by default for verified beta accounts unless previously turned off; it can be disabled in the desktop app. Version 0.1.19 requires opt-in. Usage sharing is independent of daily sync, which remains off until enabled. See usage-sharing details.