Privacy Policy
The short version: the extension collects nothing, stores nothing, and sends nothing anywhere except to the Dataverse environment you are already signed in to.
Dataverse X-Ray is a browser extension for Microsoft Power Apps model-driven apps. It helps developers and consultants understand why a form field is in its current state, what access a user has, and what happened when a record was saved. This policy explains what the extension does with data.
What the extension does
When you open a model-driven app and use the extension's side panel, it reads information from the page you are on and from your Dataverse environment, using the session you are already signed in with. It does this only when you open the panel or press a button in it, and only on Power Apps pages.
Data collection
The extension collects no personal data and no usage data.
- No server and no analytics. The extension has no backend. It sends nothing to the developer or to any third party.
- No storage. It does not use browser storage, cookies, or local files. Everything the panel shows is held in memory for the current page and discarded when the tab reloads or closes.
- No browsing data. It does not read, record, or transmit your browsing history, your credentials, or your activity on any site other than the Power Apps page you have open.
- No remote code. All code ships inside the extension package installed from the store.
Data the extension reads
To answer your questions, the extension reads, on demand, from your own Dataverse environment:
- form definitions, column metadata, business rules and web resources;
- security roles, teams, business units and access rights;
- plug-in trace logs, system jobs and cloud flow run history.
These requests go only to the Dataverse environment you are already signed in to, on the same connection your browser already has open to it, and with your own permissions. The extension can never see more than you can.
Optional tracing
The Activity tab and the live change timeline work only after you press Start tracing. While tracing is on, the extension observes the app's own requests to Dataverse and its calls to the form API, in order to list what a save did. This happens inside the page, in memory only, and is removed when you press Stop tracing or reload the page. Tracing is never on by default and never persists.
Permissions
| Permission | Why it is needed |
|---|---|
| Side panel | To show the extension's panel beside the app. |
| Scripting | To reconnect to a page after the extension has been updated, without asking you to reload. |
| Dataverse domains | To run inside model-driven apps and call your environment's Web API with your existing session. |
The extension does not request access to any other website.
Children
The extension is a professional tool and is not directed at children.
Changes to this policy
If this policy changes, the updated version will be published at this address with a new effective date.
Contact
For questions about this policy or the extension: rlabs-co@outlook.com