HeaderMod does not collect, transmit, or share any personal or browsing data with the developer or any third party.
Data stored locally: Your header profiles and settings are saved using the browser's extension storage (storage.local and storage.sync). If browser sync is enabled, storage.sync data is synced across your own browser profiles by the browser vendor — never to the developer.
Header modification: HeaderMod modifies HTTP request/response headers only according to the rules you configure, using the declarativeNetRequest API. It does not read, log, or transmit page content.
Host access: The optional <all_urls> permission is used solely to apply your header rules to the sites you choose. No site data is read or sent anywhere.
Third-party services: none. No analytics, tracking, or advertising.
Full policy: https://ibaciu6.github.io/headermod/privacy-policy.html