Privacy policy for Stay Unseen - IG & FB Seen Blocker
Stay Unseen - IG & FB Seen Blocker by Mheadows
Privacy policy for Stay Unseen - IG & FB Seen Blocker
Privacy Policy — Stay Unseen
Stay Unseen does not collect, transmit, or sell any data. Nothing ever leaves your device. There are no servers, no analytics, no accounts, no tracking, and no third parties.
What the add-on does
Stay Unseen blocks the "seen" and "read receipt" signals your browser sends to Instagram, Facebook, and Messenger. It works by intercepting your own outgoing requests to those sites before they are sent.
What is stored on your device
Everything below is written to your browser's local extension storage (storage.local) and stays there. None of it is transmitted anywhere.
- Block counters and feature toggles — how many signals were blocked per feature, and which features you have enabled.
- Recent blocks — the URL, timestamp, and feature for the last 20 blocked requests.
- Captured requests (diagnostics) — for the last 30 matching requests: the URL, HTTP method, and up to 4000 characters of the request body.
- WebSocket frames (diagnostics) — up to 300 characters of the last 20 matching outgoing frames.
- Instagram request log (Firefox only) — method, URL, type, and timestamp for the last 40 requests.
Please note: the captured request bodies and WebSocket frames are raw snippets of your own outgoing traffic to Instagram and Facebook. Because sending a direct message is itself such a request, these snippets can contain the text of messages you send. They exist so you can verify the blocking is working, they are capped and overwritten as new entries arrive, and they are never transmitted — but they are stored in your browser profile until cleared.
Removing your data
Click Reset counters in the popup to erase the counters, recent blocks, captured requests, WebSocket frames, and request log. Uninstalling the add-on removes all stored data.
Permissions
- storage — save your toggles and the counters described above.
- webRequest / webRequestBlocking (Firefox) and declarativeNetRequest (Chrome) — cancel seen/read-receipt requests at the network layer.
- scripting — install the in-page patch that intercepts these requests.
- Host access to instagram.com, facebook.com, messenger.com — the only sites the add-on runs on. It is inactive everywhere else.
Contact:
jayson@mheadows.bond