🛑 Is ModHeader safe to use in 2026?
No. In July 2026 Google flagged ModHeader as malware and Microsoft removed it from the Edge store, after researchers found build 7.0.18 collected the domains you visit via a hidden SDK. Remove it and switch to a maintained alternative.
📂 Can I export and version control configs?
Share links encode headers in the URL. Paste them into docs or copy the JSON directly.
🔒 Does the share page send my data anywhere?
No. Everything stays in your browser. Sensitive keys are automatically masked.
🌐 Will my rules apply to all sites?
The current VibeHeader interface applies enabled request-header entries broadly. Pause the configuration when it is not needed, avoid long-lived secrets, and verify active values in DevTools.
🔧 What if I need redirects or mocks?
For complex needs, try Requestly or desktop proxies. For headers only, VibeHeader is simpler.
🛡️ Security tips?
Share only with trusted teammates, avoid long-lived secrets, rotate values periodically.