Privacy Policy — HaoDev (Network Request to Bug Report)

Last updated: 2026-09-20 · Published at https://axing499.github.io/HaoDevDoc/

Summary: HaoDev does not collect, transmit, sell, or share any data. It has no servers, no analytics, no telemetry, and no network access. Everything it produces stays inside your own browser profile, and anything you export is written to your own computer by your browser's normal download mechanism.

一句话:HaoDev 不收集、不上传、不出售、不共享任何数据。

1. What the extension does with data

HaoDev runs as a Chrome DevTools panel. When you open DevTools and use the panel, it:

  1. Reads network request metadata (URL, method, status, timings, request and response headers, request and response bodies) from the Chrome DevTools Network API (chrome.devtools.network). That API only exposes requests made by the tab whose DevTools window is currently open.
  2. Stores the requests you explicitly pin in your browser's local IndexedDB database inside the extension's own storage area, together with the timestamp, the page it came from (the request's Referer header) and the size.
  3. Writes a file to your downloads folder when you click export (Markdown, self-contained HTML, or JSON).

All three steps happen locally, inside your browser, on your machine.

2. What we do NOT do

3. Permissions and why they are needed

PermissionWhy it is required
storage Stores your preferences locally: whether auto-redaction is on, your custom redaction field names, export naming/template preferences, and the monthly counter. Nothing leaves the browser.
unlimitedStorage Pinned evidence (including full response bodies, up to 256 KB each) is kept in IndexedDB. Without this permission Chrome may evict the database on storage pressure, which would silently destroy evidence the user deliberately saved.

The extension deliberately requests no host permissions, no tabs, no activeTab, no scripting, and no content scripts.

4. Sensitive data and redaction

Pinned requests may contain credentials. HaoDev therefore includes a redaction engine:

5. Data retention and deletion

6. Children

The extension is a developer tool. It is not directed at children and collects no personal information from anyone, including children.

7. Changes to this policy

Any change to this policy will be published at this URL, with the date at the top updated. Because the extension collects nothing, material changes are unlikely; if the project ever added any form of data collection, that would require a clear in-product disclosure and a permission change that Chrome would show to you on update.

8. Contact

Questions, bug reports, or privacy concerns: axing499@163.com


隐私政策(中文)

最后更新:2026-09-20 · 发布地址 https://axing499.github.io/HaoDevDoc/

HaoDev 不收集、不上传、不出售、不共享任何数据。它没有服务器、没有统计上报、 没有网络访问。所有内容只存在于你自己的浏览器里;导出的文件由浏览器按正常下载流程写到你自己电脑上。

它对你的数据做了什么

  1. 读取网络请求元数据(URL、方法、状态码、耗时、请求与响应头、请求与响应体), 来源是 Chrome 的 DevTools Network API(chrome.devtools.network)—— 该 API 只能看到 「当前这个 DevTools 窗口所检查的那个标签页」发出的请求。
  2. 把你主动点「固化」的请求存进浏览器本地 IndexedDB(扩展自己的存储区), 附带时间、来源页面(请求的 Referer 头)和体积。
  3. 在你点导出时,把一个文件写进你的下载目录(Markdown / 单文件 HTML / JSON)。

这三步全部发生在本机浏览器内。

我们不做的事

权限与用途

权限为什么需要
storage 在本机保存偏好:自动脱敏开关、自定义脱敏字段名、导出命名与模板、本月采集计数。
unlimitedStorage 固化下来的证据(含完整响应体,单条上限 256 KB)存在 IndexedDB。没有这个权限时 Chrome 可能在存储紧张时清掉数据库,等于静默销毁用户主动保存的证据。

扩展刻意不申请 host 权限、tabs、activeTab、 scripting,也不注入内容脚本。

敏感数据与脱敏

数据保留与删除

儿童

这是开发者工具,不面向儿童,也不向任何人(包括儿童)收集个人信息。

政策变更

任何变更都会发布在本地址,并更新顶部的日期。

联系方式

axing499@163.com