Privacy Policy
ForgeReq was built on an uncompromising foundational premise: your developer data, secrets, headers, and API interactions belong strictly to you.
1. Zero Telemetry & Zero Tracking
ForgeReq does not include Google Analytics, Mixpanel, Sentry, Segment, telemetry beacons, or usage tracking scripts. We do not track:
- Your keystrokes, URLs, parameters, or payloads.
- Your IP address, geographic location, or machine identifiers.
- How often you open the application, what features you use, or which protocols you test.
2. Local Encrypted Storage
All collections, requests, responses, environment variables, and settings are stored locally on your physical machine. Sensitive secrets (bearer tokens, basic auth credentials, client keys) are encrypted with AES-256-GCM backed by your operating system keychain (Keytar).
3. Network Communications
The only network traffic ForgeReq ever creates is the traffic you explicitly request (e.g. clicking "Send" to test your API endpoint or invoking an LLM provider using your own BYOK key).
4. Local-First Transparency & Privacy
ForgeReq is free software for personal and commercial use. We do not operate user accounts, cloud sync relays, or telemetry databases. Official binary releases are digitally signed and distributed through certified app stores (Microsoft Store and Apple Mac App Store) and our public release portal.
5. Contact & Questions
If you have any questions, audit findings, or concerns regarding our privacy architecture, please reach out via our GitHub repository issues.