Chrome Extension
RadFuzion Sidebar — Privacy Policy
How the RadFuzion Sidebar browser extension handles your data. Last updated July 2026.
What this extension is
RadFuzion Sidebar is a companion client for RadFuzion, self-hosted DICOM routing and radiology software that you run on your own infrastructure. The extension shows a read-mostly cockpit — a dashboard, live transfers, exam search, and RadSR structured-report results — in a Chrome side panel next to your other tools. It is not a standalone product: it only works when pointed at a RadFuzion server that you operate.
The short version
The extension talks to one server: the RadFuzion instance you configure. It sends nothing to RadFuzion (the company) or to any third party. There is no analytics, no advertising, no tracking, and no remote code. The only things it stores on your device are your server’s URL and a refresh-speed preference.
Data the extension accesses
When you sign in, the extension calls your RadFuzion server’s API and displays what it returns — which can include protected health information (patient names, accession numbers, exam details) and structured-report results. This information is fetched from your server and rendered in the side panel for you, the authorized user. It is never copied to the extension’s developer, transmitted to any third party, or sent anywhere other than back to your own RadFuzion server.
Data the extension stores
The extension stores only non-sensitive preferences and state locally, using Chrome’s storage.local API: the URL of your RadFuzion server, your chosen live-refresh interval, the fleet node you last selected, whether desktop alerts are enabled, and the last alert counters (so notifications fire only when something changes). No patient data, credentials, or health information are written to storage. This data stays on your device and is not synced.
Authentication
You authenticate to your own RadFuzion server. If you are already signed in to RadFuzion in another tab, the extension reuses that session. Otherwise it offers a sign-in form that posts your username and password directly to your configured RadFuzion server over the connection you set up. Credentials are never stored by the extension and are never sent to the developer or any third party.
Permissions we request, and why
Side panel — the extension’s entire interface is a Chrome side panel.
Storage — to remember your server URL and preferences (see above).
Alarms — to check your own server about once a minute in the background, so the toolbar badge and optional alerts stay current while the panel is closed.
Notifications — to show optional desktop alerts for operational events on your own server (a destination down, failed exams, a fleet node unreachable). The alert text contains operational status only — counts and destination or node names, never patient data. You can turn these off in the extension’s settings.
Context menus — adds a single right-click item, “Find in RadFuzion”, that appears only when you have text selected. When you click it, that selected text (for example an accession number from your RIS) is used once as a search query against your own RadFuzion server. It is not retained and is not sent anywhere else. The extension has no content scripts and cannot read page content on its own — it only receives text you explicitly select and act on.
Host access — RadFuzion is self-hosted, so your server lives at an address only you know (an internal hostname, IP, or port). The extension needs permission to reach the address you enter at runtime, and it only ever contacts that one configured server. It does not read, inject into, or modify the content of any web page.
What we do not do
We do not collect, sell, rent, or share your data. We do not use it for advertising or to build user profiles. We do not use it for creditworthiness or lending decisions. We do not use it for any purpose unrelated to showing you your own RadFuzion instance. The extension contains no remotely-hosted or dynamically-loaded code.
Data security
Because all data flows between your browser and your own RadFuzion server, the security of that data is governed by how you deploy and secure RadFuzion (for example, using HTTPS/TLS and your network controls). We recommend serving RadFuzion over TLS. The extension validates server certificates on secure connections.
Changes to this policy
If this policy changes, we will update this page and the “last updated” date above. Material changes will be reflected here before they take effect.
Contact
Questions about this policy or the extension? Contact us.