Privacy
TrackLP and the Quick Position Chrome extension. Updated 25 August 2026.
The extension, in one paragraph
Quick Position adds a panel to Meteora DLMM pool pages (app.meteora.ag/dlmm/*) that opens and closes SOL-only positions from a wallet TrackLP holds for you. The extension holds no private key. It reads the pool address from the page URL and nothing else on the page, and it talks only to tracklp.com.
What the extension reads
- The pool address, from the URL of the Meteora tab. No page content, no selectors against Meteora's markup.
- The values you type into the panel: amount, downside, strategy, bins above price.
- On
tracklp.comonly: the linking handshake that gives the extension its access token.
It does not read your browsing history, other tabs, the clipboard, or anything on any other site. It requests only the storage permission and host access to tracklp.com.
What it sends, and where
Every request goes to tracklp.com and nowhere else — the host is fixed in the extension, not configurable by a web page. Requests carry the pool address, your panel inputs, and your access token, so the server can preview, open, close, and list positions for your account and show who else is providing liquidity in that pool.
What it stores in your browser
- An access token, valid for 90 days. The server keeps only a hash of it; the token cannot mint another token.
- Your panel preferences (amount and downside presets, strategy, whether the intelligence column is open).
Unlink in the extension popup deletes all of it. A new token can only be issued from a signed-in session at tracklp.com/settings/extension.
What TrackLP holds on the server
- Your account (email, sign-in method) and plan.
- The wallets you track and the alerts generated for them.
- Wallets TrackLP creates for you — for copy trading or for the extension. Their private keys are encrypted with Google Cloud KMS and used only to sign the transactions you or your copy settings request. You can export a key from Settings (rate-limited and logged) and you can withdraw at any time.
- A journal of the positions opened and closed through TrackLP, and request logs for security and debugging.
Third parties
To price tokens, read the chain, and submit transactions, the server calls Solana RPC (Helius), Jupiter, Meteora's API, and Birdeye. These calls originate from TrackLP's servers, not from your browser, and carry wallet and pool addresses — never your account identity.
Meteora referral.Wallets that TrackLP creates for you are registered under TrackLP's Meteora referral code when they are created. This is how TrackLP earns a share of the fees those wallets generate, and it is why the platform is free. It does not change the fees you pay. We never register a wallet you brought yourself without asking you first.
What we do not do
- Sell or share personal data with advertisers.
- Read or inject anything into Meteora's page beyond our own panel.
- Move funds without a request from you or from a copy-trading setting you enabled.
Chrome Web Store disclosure
Data-use categories: authentication information (the access token) and financial and payment information (wallet addresses and position data). Single purpose: opening and closing Meteora DLMM positions from a TrackLP wallet. No remote code is loaded.
Contact
Questions or deletion requests: use the feedback form at tracklp.com/roadmap from your account, and we will act on it from there.