HeaderForge Privacy Policy

Effective date: 2026-07-20 · Product: HeaderForge browser extension

Summary: HeaderForge is offline-first. It does not collect, transmit, sell, or share your data.

What we store

Configuration is stored only in chrome.storage.local on your device:

What we do not do

Permissions

Permission Why
storage Save profiles locally
declarativeNetRequest / host access Modify request headers
tabs Open options and support toolbar workflows
http://*/*, https://*/* Required so header modifications can run on websites. No browsing data leaves your device.

Domain marks

Favicon-like marks next to domain rules are generated locally (SVG data URIs). They are not fetched from the network.

Changes

If a future version adds optional cloud sync, it will be opt-in, documented, and never enabled by default.

Contact

For privacy questions or reports, open an issue in the HeaderForge GitHub repository.