SiteEgress 1.1 for Chrome

See where websites send your data.

SiteEgress turns browser-visible website activity into a clear privacy exposure report. Inspect third-party destinations, known services, fingerprinting signals, form destinations, permissions, and evidence—processed locally.

Local-firstNo telemetryMinimal permissions
SiteEgress
SiteEgress privacy exposure overview in Chrome
3API permissions
36interface languages
0backend services
4export formats
Core capabilities

A browser privacy inspection workflow, not a fear meter.

SiteEgress separates observed activity, declared destinations, known-service matches, and privacy-sensitive heuristics so users can review evidence in context.

Visible data destinations

Map first-party and third-party hostnames seen through browser-visible resource and API activity.

Known service recognition

Identify common analytics, advertising, session replay, customer messaging, and observability services from a packaged local catalog.

Fingerprinting signals

Surface Canvas, WebGL, Audio, WebRTC, device enumeration, and related high-entropy browser API use as conservative heuristics.

Forms and permissions

Review form destinations, cross-site submission attempts, password-field presence, and sensitive browser permission requests.

Clean and Detailed views

Use a focused overview for fast checks or a technical view for destinations, signals, evidence, and local history.

Local reporting

Export JSON, CSV, standalone HTML, or a printable report without sending the audit to a SiteEgress server.

SiteEgress third-party data flow view
Workflow

How SiteEgress works

1

Observe

Packaged Chrome content scripts observe minimized browser metadata from the start of normal HTTP and HTTPS page loads.

2

Classify

SiteEgress separates observed, declared, matched, and heuristic evidence and calculates an explainable exposure score.

3

Review

The Side Panel presents a quick summary, full destination map, signals, evidence, optional local history, and exports.

Privacy architecture

Local-first by design

SiteEgress has no account, developer audit backend, telemetry, advertising SDK, cloud sync, or external AI service. Optional Geo Insights is off by default; when enabled, unique public destination-server IPs may be sent to ipwho.is only for country-code lookup and raw IPs are not retained.

Local-first No telemetry Minimal permissions
manifest.json

Minimal extension API permissions

storage

Stores current session reports, interface preferences, and optional compact local history.

sidePanel

Displays the audit beside the website while the user continues browsing.

webRequest

Observes non-blocking response metadata required only for optional Geo Insights.

SiteEgress declares HTTP and HTTPS website access for document-start content scripts and non-blocking response metadata. It does not request webRequestBlocking and cannot inspect Chrome internal pages or the Chrome Web Store.

What SiteEgress cannot prove

  • Server-to-server transfers that are not visible inside the browser
  • How a recipient uses data after receiving it
  • Whether a website has malicious intent
  • Legal compliance with GDPR, CCPA, or other laws
  • That a low score means a website collects no data

Privacy visibility without uploading the audit.

Install SiteEgress from the Chrome Web Store when the listing is available, or contact support for release access.

Get SiteEgress