Privacy Policy

Effective October 11, 2026

Dosson does not collect, store or share any of your data. It has no server and no analytics, and nobody at Bocares can see which pages you visit or what Dosson shows you.

What Dosson reads

To inspect a page, Dosson reads it in your browser: its performance timings, the variables and functions it defines, the frameworks it loads and, when you open Security, the values in its storage and readable cookies. All of this is computed on your device, shown to you, and forgotten when you close or reload the tab. None of it is sent anywhere.

The only requests Dosson makes

To show the latest version of a framework, and when each version came out, Dosson makes one request, only when you open that framework's details (for example React, in Frameworks): to deps.dev (Open Source Insights, run by Google) for frameworks published on npm, or to api.github.com for the others.

The request names the framework and nothing else: nothing about the page you're on or the sites you visit. Like any web request, it reaches those services from your IP address, under their own privacy policies.

What Dosson stores

Two things, both in your browser only. Nothing is stored outside it.

Secrets

Security → Secrets looks for credentials the page leaves where any script can read them. It shows them redacted and reveals a full value only when you ask. Findings are never saved and never leave your browser.

This is best effort only, based on naming heuristics: if Dosson doesn't spot a leaking key, that doesn't mean there isn't one.

Why Dosson asks for its permissions

Selling and sharing

We don't sell, rent or share data, because we have none. Dosson uses no advertising or tracking.

Changes

If this policy changes, the new version will be posted here with a new effective date.

Contact

Questions about privacy: dev@bocares.com.