Last updated: September 13, 2026
Headrule does not collect, store, transmit or sell any personal data or browsing data. It has no analytics, no telemetry and no crash reporting.
Headrule lets you define rules that add, set or remove HTTP request and response headers. Those rules are handed to Chrome's declarativeNetRequest API, which applies them inside the browser. Headrule does not use content scripts and cannot read the pages you visit.
chrome.storage.local).chrome.storage.sync, which Google synchronises between your signed-in Chrome browsers under Google's own privacy policy.The only network request Headrule makes on its own is to the license server operated by Lemon Squeezy (api.lemonsqueezy.com) when you activate, re-validate (about once a week) or deactivate a Pro license. That request contains the license key and a device label such as "Headrule on macOS". No browsing data is included. Lemon Squeezy's privacy policy applies to the purchase itself.
Headrule is a developer tool and is not directed at children under 13.
If this policy changes, the new version is published at this address with an updated date. The extension will never start collecting data without an explicit, visible change to this page and the store listing.