Item logo image for HeaderVault

HeaderVault

ExtensionDeveloper Tools
Item media 5 (screenshot) for HeaderVault
Item media 1 (screenshot) for HeaderVault
Item media 2 (screenshot) for HeaderVault
Item media 3 (screenshot) for HeaderVault
Item media 4 (screenshot) for HeaderVault
Item media 5 (screenshot) for HeaderVault
Item media 1 (screenshot) for HeaderVault
Item media 1 (screenshot) for HeaderVault
Item media 2 (screenshot) for HeaderVault
Item media 3 (screenshot) for HeaderVault
Item media 4 (screenshot) for HeaderVault
Item media 5 (screenshot) for HeaderVault

Overview

Modify HTTP request and response headers with profiles and URL filters. Works locally: no network requests, no analytics.

HeaderVault lets you modify headers in your browser: add, change and remove HTTP headers of requests and responses. It is built for web developers, QA and DevOps engineers who need to send auth tokens, feature flags or debug headers, or override response headers while they test. Everything works locally. HeaderVault makes no network requests, has no analytics or telemetry, and keeps your headers in the browser's local extension storage. The code ships unminified, so anyone can read exactly what it does. Modify headers: • Set, Remove or Append any request or response header • Turn each header row on or off with one click • Several rows for the same header: the lowest row wins, Set + Append are combined for you • Invalid rows are marked next to the field and never break the others Profiles: • Keep separate header sets for staging, production or local development • Switch the active profile with one click; pause everything with one switch • Rename, duplicate, clear or delete profiles URL filters: • Limit a profile to URLs with browser URL patterns (||api.example.com^) or RE2 regular expressions • Exclude URLs and choose resource types (documents, XHR/fetch, scripts and more) Import and export: • Export all profiles or just one to a JSON file, import them on another computer • Imports profiles exported from ModHeader (JSON); every skipped setting is listed before you confirm Privacy: • Two permissions only: declarativeNetRequestWithHostAccess and storage • Site access is optional and asked for only when you enable your first header • No account, no sync, no tracking HeaderVault uses the browser's declarativeNetRequest engine, so header values are fixed text (no scripts or per-request values). Not affiliated with or endorsed by ModHeader. Privacy policy: https://headervault.com/privacy.html Support: support@headervault.com

Details

  • Version
    1.0.0
  • Updated
    October 11, 2026
  • Offered by
    HeaderVault
  • Size
    51.06KiB
  • Languages
    2 languages
  • Developer
    Email
    support@headervault.com
  • Non-trader
    This developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.

Privacy

Manage extensions and learn how they're being used in your organization
The developer has disclosed that it will not collect or use your data. To learn more, see the developer’s privacy policy.

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes

Support

For help with questions, suggestions, or problems, visit the developer's support site

Google apps