Chrome Extension by StoicSoft
Last updated: March 27, 2026
Server Spy runs entirely on your device. We do not collect, transmit, store, or sell any user data.
Server Spy is a browser extension that inspects HTTP response headers, security configuration, SSL/TLS transport hints, and server technology for websites you visit. All inspection and analysis happens locally in your browser.
We do not collect any of the following:
Server Spy uses Chrome's local storage (chrome.storage.local) solely to save your preferences:
This data:
| Permission | What it does | Data transmitted |
|---|---|---|
| storage | Saves your theme and auto-capture preferences locally | None |
| contextMenus | Adds a right-click menu for quick access to Server Spy | None |
| webRequest | Reads HTTP response headers from network requests to display server information | None |
| tabs | Identifies the active tab URL to match with captured headers | None |
| scripting | Gathers page-level metadata (navigation timing, protocol) via the Performance API | None |
| Host permissions (all URLs) | Allows header inspection on any website you visit | None |
All data processed by these permissions stays on your device. Nothing is transmitted externally.
Server Spy does not connect to, integrate with, or transmit data to any third-party services, APIs, servers, or analytics platforms.
Server Spy does not load or execute any remote code. All JavaScript is bundled locally within the extension package.
Server Spy is a developer tool not directed at children under 13. We do not knowingly collect any data from anyone, including children.
If we update this policy, the changes will be posted on this page with an updated date. Since we do not collect any data, meaningful changes are unlikely.
If you have questions about this privacy policy, please contact us at [email protected]
Publisher: StoicSoft