See who runs this site before you type.
A Chrome extension that shows what a page states about its own operator — with the evidence — the moment you press the toolbar icon.
USE CASES
It makes no safety judgement. It lines up what the page states about itself, with the evidence for each line.
You tend to go looking for the operator only once you are at the checkout, then scroll all the way back to the footer. One press of the toolbar icon lines up the company name, address and contact details, quoted from wherever they were found.
What is not written cannot be found by looking harder, and you rarely know when to stop looking. Each line is marked Stated, Hint or Not confirmed, so the absence itself becomes something you can weigh.
These are the lines you reach only by reading the terms to the end. Governing law, jurisdiction and country are shown as separate rows, and when the page itself is the terms or the policy, its body is read too.
Where what you type is submitted, and which third parties the page pulls in, are not visible from the design. Data storage, transfer destination, where input is sent, and the other origins being loaded are each shown as their own row.
Features
What this page says, and what it leaves unsaid. That is where it stops — the judgement stays with you. No score, no stars, no red-or-green verdict.
It never touches a field’s value, files, the selection or the clipboard.
No networking API exists anywhere in the shipped code.
There is no score, no trust rating, no star rating and no traffic-light colour.
You can see where each statement was found, quoted in place.
WHAT IT SHOWS
It gathers only what the page states, and separates it by how firmly it was said.
Found where a site names its own operator: a legal notice, structured data, terms.
A company name in the footer, a site name in meta — operator-like, but not a statement.
What was not found is not hidden either. Finding nothing does not mean a site is safe.
Nothing is merged. When several company names appear, all of them are listed rather than reconciled into one.
A limited reading range
Footers, address elements, structured data, meta tags, link text and URLs, and the sources of embedded frames and scripts. The page body is read only when the page itself is a legal notice, terms, privacy policy or company page. Articles, blog posts, product copy and user posts are never read.
Evidence, quoted in place
Where it was found and what it said — up to three excerpts per value.
Fills in from the site’s own pages
If you visited this site’s legal notice, terms, privacy policy or company page earlier in this session, what was found there is added, marked “Other page”. It never follows a link on its own.
Related pages as links
Up to six candidates — company profile, statutory notice, terms, privacy policy — listed as links. It never opens them for you.
Shows the other origins the page loads
It lists where the embedded frames and scripts on the page are served from. Providers it can name from the bundled list (about 120) are labelled and collapsed by default, and the count is always shown. Where the site itself mentions that domain, the sentence is quoted too. Collapsing does not mean safe, and no judgement is made either way.
Interface language
Follows the browser language. Japanese and English are supported.
What a page loads is what it loads — not necessarily where your input goes. Even when a third-party payment button says nothing in the markup about where it leads, the fact that something is served from elsewhere can still be seen.
HOW IT WORKS
It watches nothing on the page. In exchange for never appearing on its own, it can be run as often as you like — and neither running it nor closing it is recorded anywhere.
Press the toolbar icon, then “Check who runs this page”, and a panel appears in the corner of the screen. Press it while you are typing and it steals neither the click nor the focus.
It collects the operator statements and sorts them into stated, hint and not confirmed. Several company names stay several company names. The other origins the page loads are picked up at the same time.
When you are done, you close it. Esc works too while focus is inside the panel. There is nothing to approve, and no record that you looked.
Open it again on the same page and it remembers nothing from last time. It reads the page as it is, every time.
GET STARTED
Add it, and press the icon when you want to know. There is no settings screen.
Just press “Add to Chrome” on the Chrome Web Store.
Open the extensions icon (the puzzle piece) at the top right of Chrome and turn on the pin for Site Operator Check to reach it in one click.
Press the icon, then “Check who runs this page”, and a panel appears in the corner. The cursor stays in the field, so you can carry on typing.
Open “Show details and evidence” in the panel for the excerpts, what could not be confirmed, the other origins the page loads, and the related-page candidates.
It does not run on chrome:// pages, the Chrome Web Store, the PDF viewer, local files or view-source pages, because Chrome does not allow it.
PRIVACY
A tool for checking who you are dealing with has no business collecting anything about you.
It does not read what you are about to type.
Never touching a value, a file, the selection or the clipboard is not a promise in a comment — it is checked mechanically at build time.
What is kept
One thing: the operator information read from this site’s own legal notice, terms, privacy policy or company page (per origin, at most 30 origins, at most 64KB each). It disappears when the browser restarts. What you do is never stored — an extension that verifies nothing has no state amounting to “approved”, so there is nothing to record.
Network
None. No networking API exists in the shipped code, and the extension pages declare connect-src 'none'. There are no analytics, no ads and no third-party SDKs.
Permissions
Only “storage”. No host permissions are declared. Browsing history, cookies, bookmarks and downloads are never touched.
Check it yourself
The extension’s own traffic (the service worker) is visible in the dedicated DevTools opened from chrome://extensions; the content script’s traffic is visible in the page’s DevTools (F12).
LIMITS
It is not a tool that reliably stops every disclosure before it happens. Here is the line, drawn in advance.
| Aspect | It can | It cannot |
|---|---|---|
| The operator | Show the operator information stated on the page, with evidence | Prove that the company exists |
| The statements | Show where each statement was found and what it said | Verify that the statements are correct |
| Ownership | List every company name found, without merging them | Fully identify parent companies, subsidiaries or ownership |
| Submission target | Show the destination declared in the markup (a form’s action, a submit button’s formaction) | Know a destination that JavaScript decides at submit time. The other origins it lists are what the page loads, which is not the same as where your input goes |
| Stepping in | Check, there and then, when you press the icon | Watch your typing, appear on its own, warn you, or stop a submission — it subscribes to nothing on the page |
| Its place | Give you more to go on | Replace a security product, legal advice, or your own decision to transact |
Finding no information does not mean a site is safe. Finding it all set out properly does not mean the transaction is fine either. The decision stays with you.
Free, entirely local, no network. Add it to Chrome and start using it today.
View on Chrome Web StoreLEGAL
The privacy promise and the rules of use are set out in the documents below.