How to import legacy Clockify and CSV logs into RaterSidekick
Consolidate legacy spreadsheet records and Clockify exports into a unified work history hub without losing your historical earnings data.
A practical guide to Chrome extension permissions, site isolation, and keeping work records safe across AI annotation portals.
AI contractors handle sensitive data every shift. Platforms like Outlier, DataAnnotation, Mercor, micro1, Handshake, and TELUS impose strict non-disclosure agreements. One rogue browser extension reading page content can compromise a project or jeopardize your rating account. Yet contractors need local tools to monitor task volume, audit session time, and track estimated earnings across scattered dashboards.
Understanding browser security mechanisms is mandatory for anyone working in data annotation. You must know which sites your extensions can read, what data they touch, and how Chrome isolates tasks. Controlling extension permissions protects both your account compliance and your operational integrity.
Chrome extension permissions dictate what data a plugin can see. Historically, many extensions requested global access to read and change all data on every website you visit. In high-security annotation environments, broad permission requests represent an unacceptable operational risk.
Modern browser security centers on host permissions. Chrome allows users to grant access on three distinct levels:
For independent annotators, the target state is strict site isolation. Tools built for workforce organization should never hold broad rights across your personal or general web browsing.
Auditing your active browser extensions takes less than two minutes. Open your browser settings and navigate to the extension management page. Click details on any active tool to inspect its permissions tab.
Under the site access settings, select "On specific sites" and enter only the domain names of the platforms where you actively execute tasks. If you work across multiple proprietary platforms, you can add each domain individually. For guidance on setting up domain rules for specialized evaluation tools, see our walkthrough on configuring task-level tracking on custom AI portals.
When you restrict access, the browser blocks the extension from executing background scripts or accessing the document object model on unapproved sites. If you navigate to an unlisted portal or bank site, the extension remains completely dormant.
Restricting host domains is only half the battle. You must also evaluate what an extension does on approved sites. Third-party monitoring software historically relied on invasive methods: capturing full-screen screenshots, logging key sequences, or recording raw screen video. In AI evaluation work, these methods violate platform NDAs because they store raw prompt text and model output outside authorized platform bounds.
To keep your workspace secure, adopt a strict zero-telemetry standard for personal utilities. When reviewing workflow tools, confirm they adhere to non-invasive event tracking:
For a complete blueprint on setting up a private workspace without exposing evaluation data, read our guide on building a zero-telemetry operational stack for AI annotators.
Contractors require clear records of their hours and task counts to verify platform payouts. Relying on platform dashboards alone is risky. Portals frequently undergo maintenance, change reporting formats, or close access windows before weekly pay periods finalize.
Tools like RaterSidekick resolve this problem by recording passive operational metrics—session start times, task completion triggers, and active duration—without reading underlying task text or taking screenshots. Because it operates only on user-designated domains, your work history remains accurate and isolated. When platform reports show discrepancies, features like Pay Checker let you cross-reference your private records against platform invoices to catch underpayments before dispute windows close.
If you are migrating from spreadsheet trackers, you can import legacy CSV files or Clockify records directly into your private dashboard to maintain a continuous historical record across every platform you serve.
Maintain proper security posture on your primary work browser by running a monthly audit:
Limiting host access protects your client data, keeps your accounts compliant, and maintains clear separation between private productivity tools and client platforms.
Consolidate legacy spreadsheet records and Clockify exports into a unified work history hub without losing your historical earnings data.
Map domain permissions and keyboard shortcuts to build automatic work records on unlisted annotation portals.
Standard stopwatches log flat hours, but event-driven hubs capture task counts and audit records across multiple AI evaluation portals.