1. Introduction & Core Philosophy
Welcome to HAR File Analyzer ("we", "our", or "us"), hosted atharfileanalyzer.com. We believe that network diagnostic tools should never compromise confidentiality. HTTP Archive (.har) files often capture sensitive authorization credentials, private cookies, API keys, customer personal identifiable information (PII), and internal infrastructure routes.
Our core architecture is built around a single foundational rule: Zero Data Transmission. We designed HAR File Analyzer so that parsing, timeline calculations, performance audits, and visualization happen 100% within your client browser window.
2. Data We Do NOT Collect
When you use our tool to inspect, analyze, or sanitize a HAR or JSON archive:
- No File Uploads: Your files are never transmitted to our web servers, cloud buckets, or third-party APIs.
- No Header or Payload Logging: We do not inspect, log, or harvest request headers (such as
Authorization,Cookie, orBearertokens) or response bodies. - No IP or Session Cross-Referencing: We do not associate your uploaded network traces with your IP address or identity.
- No Telemetry on File Contents: Performance metrics and waterfall diagrams are generated in transient browser RAM and discarded as soon as you close or reload the browser tab.
3. Data Stored Locally on Your Device (Browser LocalStorage)
To provide a seamless user experience across page reloads, HAR File Analyzer uses standard browser localStorage solely for your interface preferences:
| Key | Purpose | Lifespan |
|---|---|---|
| theme | Stores your preferred appearance mode: dark or light. | Persistent until manually cleared via browser settings. |
No HAR contents, network entries, or file contents are ever persisted to permanent browser storage.
4. Cookies & Tracking Technologies
HAR File Analyzer does not set tracking cookies, marketing cookies, or third-party advertising identifiers. We do not use intrusive screen-recording software (such as FullStory or Hotjar) that could inadvertently read sensitive network payloads rendered on your screen.
5. Security Best Practices for Sharing HAR Archives
Because HAR files often capture unencrypted authentication headers and session cookies, we advise users to take proactive security measures:
When sharing HAR logs with external vendors, support engineers, or colleagues, utilize our built-in "Sanitize & Redact HAR" export tool located on the homepage. This feature systematically wipes Authorization headers, secret tokens, and session cookies from your file before creating a clean downloadable copy.
6. Third-Party CDNs & Fonts
Our site utilizes Google Fonts (Inter and JetBrains Mono) delivered via Google's secure content delivery network. When loading these typography assets, standard HTTP handshake data (such as your browser's user-agent and IP address) may be transmitted to Google purely for font asset delivery. No HAR files or tool telemetry are connected with these requests.
7. Global Privacy Regulations (GDPR & CCPA/CPRA)
Under the European General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA/CPRA):
- We do not collect personal data.
- We do not sell, rent, or trade personal data or browsing behaviors.
- Because no personal data is stored on remote servers, rights of erasure, rectification, or portability are satisfied by design—closing your browser tab permanently purges all active session trace data.
8. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect modifications in our architecture or web standards. Any revisions will be published immediately on this page with an updated "Last Updated" timestamp at the top.
9. Contact & Inquiries
If you have questions regarding our privacy architecture or technical implementation, please contact our team: