PageScope

Privacy & Support

清楚了解資料如何被處理

PageScope:輕量網頁請求檢視,適用於 iPhone 與 iPad 的 Safari。觀察到的網頁請求資訊留在你的裝置上。

生效與更新日期:2026 年 10 月 5 日
只在裝置上處理

沒有開發者後端,不會自動上傳觀察紀錄。

不追蹤、不分析

沒有帳號、廣告、分析 SDK 或跨 App/網站追蹤。

由你控制分享

只有主動匯出並分享 HAR 時,資料才會離開 App。

隱私權政策

PageScope 與其 Safari Web Extension 會針對你明確允許擴充功能存取的 Safari 網頁,觀察可由 Safari 與網頁 API 提供的網路請求中繼資料。所有處理均在裝置上進行;開發者未為 PageScope 經營後端,也不會收到這些觀察紀錄。

App Store 隱私摘要:依目前功能,開發者不收集資料,也不使用資料進行追蹤。

在裝置上處理的資料

依 Safari 與網頁 API 實際提供的內容,PageScope 可能在裝置上處理:

  • 頁面與資源 URL,包括完整 query string。
  • Host、path、HTTP method、狀態、資源類型、protocol、耗時與傳輸大小。
  • 頁面 Fetch/XHR 公開 API 可讀取的請求/回應 headers,以及 JSON、文字、表單或 XML 內容;每側有 10 MiB 安全上限。為維持單份 HAR 不超過 10 MiB,本機擷取預算到達時會自動停止,且不會部分保存超出的 request。
  • Safari Resource Timing 提供的 DNS、連線、TLS、等待、接收、encoded/decoded size、cache、initiator 與 Server Timing。
  • WebSocket 狀態、TX/RX 訊息次數及最後傳送/接收時間;不包含訊息內容。
  • 用於對應請求來源的頁面與 frame URL。

敏感資料與無法取得的資料

PageScope 是由使用者本人操作的本機開發者工具,不會自動遮蔽 Safari 已提供的值。本機紀錄與匯出的 HAR 可能包含 Cookie、Authorization、Token、密碼、API key、session、私鑰、query、header、request body 或 response body。Safari 自動加入或禁止頁面讀取的 headers、opaque/CORS 保護的回應內容、一般導覽與靜態資源 body、WebSocket payload 及遠端 IP 不會被繞過系統限制取得。

本機儲存與刪除

請求資料保存在兩個有上限的裝置本機儲存區:主 App 的 App Group 清單最多 20,000 筆或約 48 MiB,Safari Extension 的本機顯示清單最多 3,000 筆請求或約 12 MiB(先達上限者為準;導覽分隔另有限額)。擴充功能偏好也只保存在 Safari Extension 本機。

本機偏好包含各 Safari 分頁的擷取/保留/面板顯示設定與浮窗位置。新開分頁固定只顯示 NET,同一分頁換頁可保留自己的顯示狀態。App 亦保留分頁編號及首次出現時間,讓編號保持穩定;目錄顯示的日期與時間則取自最新保留的請求。「清除」移除所選範圍的請求紀錄,不會重設這些偏好;這些資訊不會傳送給開發者。

本機紀錄與偏好會保留到使用者清除適用紀錄、Safari 移除 Extension 網站資料,或使用者刪除 PageScope 與其 App 資料。若要移除保留的分頁名稱及全部偏好,請從裝置刪除 PageScope 及其資料;重新安裝會建立新的本機 container。Safari 網站權限可另外隨時撤銷。

你可以從 PageScope App、Safari 擴充功能視窗或網頁內的 NET 面板清除請求紀錄。清除指令會在 App 與 Extension 下次通訊時同步;若其中一方被 iOS 暫停,請短暫開啟 Safari 或 PageScope 讓同步完成。移除 App 時,iOS 也會依系統行為移除 App 所屬的本機資料。

匯出與分享

PageScope 不會自動把請求紀錄傳送給開發者或第三方。只有當你主動匯出 HAR,並使用 iOS 分享功能時,資料才會傳送到你選擇的目的地。

匯出前 PageScope 會明確警示不會自動遮蔽擷取值。HAR 可能包含 Cookie、Authorization、Token、密碼、API key、完整 URL、query string、headers 與 Safari 可讀取的 request/response 內容。HAR 只轉換 Safari/頁面 API 已提供的欄位,不會補造缺少的資料。分享前請先檢查檔案內容與接收對象。

Safari 網站存取權

PageScope 的核心功能需要 Safari Web Extension 讀取你允許的網站,才能觀察網頁請求中繼資料。網站存取權由 Safari 控制,你可以只允許特定網站、每次詢問,或隨時在「設定 › Apps › Safari › 擴充功能」中撤銷權限。

PageScope 不是封包擷取器、VPN、代理伺服器或瀏覽器內部 recorder。快取、Service Worker、瀏覽器內部請求、跨來源限制及 Safari 隱私政策,都可能使部分請求或欄位無法顯示。Safari 對快取/本機資源或未開放大小資訊的跨來源資源常回報傳輸大小 0;PageScope 會顯示為「—」,不將它宣稱為真正的零位元傳輸。

PageScope 的頁面層觀察資料用於診斷,不是防竄改的稽核證據。網頁本身可能影響 JavaScript 層可觀察的資訊。

帳號、廣告與追蹤

PageScope 沒有使用者帳號、廣告 SDK、分析 SDK、追蹤 SDK 或開發者營運的雲端同步,也不會跨 App 或網站追蹤使用者。

兒童隱私

PageScope 是開發與除錯工具,不以兒童為主要使用者,也不會刻意收集兒童個人資料。

政策變更

若 PageScope 的資料處理方式改變,我們會在新版發布前更新本政策與 App Store 隱私揭露,並修改本頁更新日期。

使用支援

啟用 Safari Extension

  1. 安裝並開啟 PageScope。
  2. 前往「設定 › Apps › Safari › 擴充功能」。
  3. 啟用 PageScope,並選擇允許存取的網站。
  4. 在 Safari 開啟網頁,確認 PageScope 可存取目前網站,再於擴充功能視窗按下「開始」,或在浮動 NET 面板按 ⌄ 再按 ▶。每個新 Safari 分頁預設不擷取;開始後,同一分頁換頁或重新整理會延續擷取,直到你按下「停止」。
  5. 回到 PageScope App 可使用分頁目錄、搜尋、篩選,查看 Safari 可提供的 headers、內容與 timing,或清除紀錄。批量選取分頁目錄時,每個分頁各自匯出一個 HAR;進入目錄後也可選取個別請求匯出單一 HAR。

App 主頁顯示「Safari 擴充功能已啟用」時,只代表 Extension 的總開關已開啟,不代表目前網站已取得存取權;個別網站權限仍由 Safari 控制。

沒有出現請求紀錄

  • 確認 PageScope Safari Extension 已啟用。
  • 確認目前網站已獲得存取權。
  • 在目前 Safari 分頁的擴充功能視窗確認已按下「開始」,或在 NET 面板按 ⌄ 再按 ▶。
  • 變更權限後重新載入網頁。
  • 部分 Service Worker、瀏覽器內部、快取或受隱私限制的請求,Safari 不會提供給 Web Extension。

NET 小圓、精簡浮窗與完整面板

  • NET 小圓可拖曳,顯示狀態燈與筆數(例如 1.2k);整顆保留在畫面內並留出邊緣空間。
  • 每個新 Safari 分頁固定從只有 NET 開始;同一分頁換頁或重新整理,會保留該分頁自己的 NET/精簡/完整狀態。
  • NET 會依所在位置下方可判定的 CSS 底色切換深色或淺色外觀。圖片、影片或透明疊層若無法可靠判斷像素,黑白雙層外框仍會保留辨識度。
  • 點 NET 開啟半透明精簡浮窗,再點一次 NET 即可收起。NET 會保持顯示;精簡窗優先出現在 NET 下方,底部空間不足時改到上方。
  • 拖曳 NET 或頂部拖曳帶會一起移動兩者。中間 log 及底部摘要只顯示資訊,觸控會穿透到後方網頁;NET、標題列與控制按鈕仍可操作。
  • 按 ⌄ 會展開 ▶/■、放大、清空目前分頁 ⌫ 與 ×。開始、停止或清空後工具列保持展開,方便確認圖示切換與歸零結果;按 ⌃ 才主動收折。
  • 按放大進入完整面板,可獨立依 Method(GET、POST、PUT、PATCH、DELETE 等)篩選,並和資源類型及文字搜尋同時使用;縮小回精簡窗。完整面板會鎖住網頁捲動,精簡窗不會。
  • NET 與精簡窗共用拖曳定位點。展開時為了避開邊界而調整顯示位置,不會覆寫原定位點。

保留導覽紀錄與筆數

「保留導覽紀錄」依 Safari 分頁分開保存;勾選後保留該分頁前一頁的請求,取消後於後續導覽重設該分頁列表。「停止」不會清除既有紀錄。還原期間的載入或重試提示不代表紀錄已刪除。

容量是跨分頁共用:App 最多保留 20,000 筆或約 48 MiB,Extension 最多 3,000 筆或約 12 MiB,另有最多 100 個導覽分隔;先達到筆數或容量限制時會移除最舊紀錄。完整面板每頁顯示 250 列,可翻頁查看;精簡窗只顯示最新 3 筆,因此顯示筆數不一定與 App 相同。

清除與匯出

Extension 視窗或完整 NET 面板清除目前分頁;App 依所選範圍清除,「所有分頁」會清除全部紀錄。清除不會自動停止擷取,因此後續新請求仍會出現。若 iOS 暫停 App 或 Extension,同步可能延遲;請回到 Safari/PageScope 讓同步完成,必要時重試。

App 分頁目錄採「最新保留請求時間+固定 PageScope 分頁編號」,不是網站標題或 Safari 分頁排序;Safari 分頁即使隔夜未關閉,只要擷取新請求就會更新顯示時間,編號仍保持不變。下方網址是最近紀錄的網頁。主頁按「匯出」可勾選多個分頁,各自產生以目前目錄名稱加匯出時間命名的 HAR;目錄內可選取個別請求匯出單一 HAR。Chrome DevTools 可匯入,並顯示 Safari 實際提供的欄位;PageScope 不會自動遮蔽擷取值,匯出前會顯示敏感資料警示。

Quick Guide — English

Capture starts off for each new Safari tab, which also begins with NET only. Navigation in the same tab retains both capture and that tab's NET-only, compact or full presentation. NET switches between dark and light appearances from the CSS surface beneath it, with a two-tone outline for imagery that cannot be classified reliably. Tap NET to toggle the latest-three-request compact log; NET remains visible and the log opens below it or above it when space is limited. Dragging NET or the compact header moves the pair. Tap ⌄ to reveal Start/Stop (▶/■), Expand, current-tab Clear (⌫) and Close. Start, Stop and Clear keep the tray open for visible feedback; tap ⌃ to collapse it.

The app retains up to 20,000 requests or about 48 MiB and the extension up to 3,000 requests or about 12 MiB across all tabs, whichever limit is reached first. The App request list and full NET panel provide an independent Method filter that combines with resource type and text search. Full-panel pages contain up to 250 rows; compact mode shows three. App tab labels use the latest retained request time and a stable PageScope number, not Safari tab order. Clear does not stop capture and may require synchronization after iOS suspension. Selected tab directories export separate HAR files; unavailable fields are not fabricated.

Privacy Policy — English Summary

PageScope is a web request inspection tool for Safari on iPhone and iPad. Its Safari Web Extension processes request metadata for webpages that the user explicitly permits it to access.

Observed data is processed and stored in two bounded on-device stores: up to 20,000 entries in the native App Group list and up to 3,000 requests (navigation separators have a separate quota) in the Safari extension's local display list. The developer does not operate a backend for the app and does not receive captured data. PageScope has no account, advertising, analytics, tracking SDK, or developer-operated cloud sync.

The app may process URLs, query strings, hosts, paths, HTTP methods, statuses, resource types, protocols, Resource Timing fields, page/frame URLs, WebSocket state/message counts, and Fetch/XHR headers and readable JSON, text, form, or XML content exposed by Safari/page APIs. Text content has a 10 MiB per-side safety bound. Recording stops automatically before the bounded local capture budget can produce a HAR larger than 10 MiB, and an excess request is not partially saved. PageScope does not automatically redact Safari-visible values. Local records and exported HAR files may contain Cookie, Authorization, Token, passwords, API keys, session identifiers, private keys, query values, or other sensitive website data. Safari-hidden headers, opaque/CORS-protected content, static-resource bodies, WebSocket payloads, and remote IP addresses are not collected.

On-device preferences include per-Safari-tab capture/display settings and floating-window position. New tabs start NET-only; navigation in the same tab can retain that tab's presentation. Assigned tab numbers and first-seen timestamps remain after request clearing to keep numbering stable; the displayed directory time comes from the latest retained request. Clear removes requests in the selected scope, not these preferences; none are sent to the developer.

Users can clear locally stored records in the app, extension popup, or in-page NET panel; clear commands synchronize when the app and extension next communicate. Local records and preferences remain until the applicable records are cleared, Safari removes extension website data, or PageScope and its app data are deleted. Deleting the app data removes retained tab labels and preferences. Data leaves the app only when the user explicitly exports HAR files and chooses a destination through the system share sheet. HAR export only converts fields Safari/page APIs exposed to PageScope and does not add unavailable data. Before export, PageScope warns that captured values are not automatically redacted and that the file may contain credentials or other private information. Users should review the file and its recipient before sharing.

Website access is controlled by Safari and may be limited or revoked at any time. PageScope is not packet capture, a VPN, a proxy, or a complete HAR recorder; Safari privacy restrictions and browser behavior may prevent some requests or fields from appearing. Safari commonly reports transfer size 0 for cached/local resources or cross-origin resources whose size is not exposed; PageScope treats that value as unavailable rather than a confirmed zero-byte transfer. Page-context observations are diagnostic metadata, not tamper-proof audit evidence, and a webpage can influence JavaScript-level observations.

聯絡方式

如有隱私或產品支援問題,請透過電子郵件聯絡:

appsupport.ios@m2k.com.tw