Auto delete cookies & site data on tab close. 100% local, open source, no tracking. Cookie AutoDelete alternative for Manifest V3.
JavaScript
1
21 commits
updated Aug 28, 2026
Auto delete cookies & site data the moment you close a tab. Keep only the sites you trust.
CookieMop is a Manifest V3 successor to Cookie AutoDelete: when you close a tab, the cookies (and optionally localStorage, IndexedDB, CacheStorage and Service Workers) of the sites you visited there are automatically deleted — unless the site is on your whitelist.


chrome://extensions, enable Developer mode, click Load unpacked, and select the repo folder.| Permission | Why it's needed |
|---|---|
cookies | Deleting cookies is the whole point |
tabs | Detecting tab closes and which site a tab is on |
browsingData | Optional deletion of localStorage / IndexedDB / caches |
storage | Saving your settings and rules (locally / Chrome sync) |
alarms | Firing the delayed cleanup reliably in Manifest V3 |
Host access (<all_urls>) | A cookie manager must be able to touch any site's cookies |
The core of CookieMop is free forever, and nothing that was free in v1.0 has moved behind a payment. Pro is additive: rule profiles, a per-cookie whitelist, and more to come. It costs $9.99 once — we have no servers, so we don't charge you monthly.
Pro does not add a single network request. There is no license server to phone, no activation call, and no usage reporting. Verify that claim yourself:
| What | Where | What to look for |
|---|---|---|
| Verification | src/lib/license.js | verifyLicenseKey() — one crypto.subtle.verify call against PUBLIC_KEY_B64, and nothing else |
| Pro gating | src/lib/license.js | isPro() re-runs that verification instead of trusting a stored flag, so editing storage by hand does not unlock anything |
| Proof of no network | anywhere in src/ | grep -rE "fetch\(|XMLHttpRequest|WebSocket|sendBeacon" src/ returns nothing. tools/package.mjs re-runs that check and refuses to build if it ever matches |
| Issuing | server/ | Server-side only. Never included in the extension package |
A license key is a payload — your email and order number — signed with ECDSA P-256. The extension holds only the public key, which can verify signatures but cannot create them.
Signing is deterministic, so the same purchase always produces the same key. That means there is no database of customers, and if you lose your key you just look it up again and get the same one back.
Because verification is offline, Pro keeps working with no internet connection, and it keeps working if this project's payment infrastructure ever disappears.
Partitioned attribute cannot be enumerated per top-level site through the extension cookies API, so CookieMop leaves them alone for now. Chrome already isolates them per site, which sharply limits their tracking value.CookieMop makes zero network requests. It has no backend, collects nothing, and stores your settings only in Chrome's own extension storage. See for yourself — the code is all here.
Full privacy policy: https://thoopring.github.io/cookiemop/privacy.html
JavaScript
85.9%
HTML
7.1%
CSS
6.9%
Auto delete cookies & site data on tab close. 100% local, open source, no tracking. Cookie AutoDelete alternative for Manifest V3.
JavaScript
1
21 commits
updated Aug 28, 2026
Auto delete cookies & site data the moment you close a tab. Keep only the sites you trust.
CookieMop is a Manifest V3 successor to Cookie AutoDelete: when you close a tab, the cookies (and optionally localStorage, IndexedDB, CacheStorage and Service Workers) of the sites you visited there are automatically deleted — unless the site is on your whitelist.


chrome://extensions, enable Developer mode, click Load unpacked, and select the repo folder.| Permission | Why it's needed |
|---|---|
cookies | Deleting cookies is the whole point |
tabs | Detecting tab closes and which site a tab is on |
browsingData | Optional deletion of localStorage / IndexedDB / caches |
storage | Saving your settings and rules (locally / Chrome sync) |
alarms | Firing the delayed cleanup reliably in Manifest V3 |
Host access (<all_urls>) | A cookie manager must be able to touch any site's cookies |
The core of CookieMop is free forever, and nothing that was free in v1.0 has moved behind a payment. Pro is additive: rule profiles, a per-cookie whitelist, and more to come. It costs $9.99 once — we have no servers, so we don't charge you monthly.
Pro does not add a single network request. There is no license server to phone, no activation call, and no usage reporting. Verify that claim yourself:
| What | Where | What to look for |
|---|---|---|
| Verification | src/lib/license.js | verifyLicenseKey() — one crypto.subtle.verify call against PUBLIC_KEY_B64, and nothing else |
| Pro gating | src/lib/license.js | isPro() re-runs that verification instead of trusting a stored flag, so editing storage by hand does not unlock anything |
| Proof of no network | anywhere in src/ | grep -rE "fetch\(|XMLHttpRequest|WebSocket|sendBeacon" src/ returns nothing. tools/package.mjs re-runs that check and refuses to build if it ever matches |
| Issuing | server/ | Server-side only. Never included in the extension package |
A license key is a payload — your email and order number — signed with ECDSA P-256. The extension holds only the public key, which can verify signatures but cannot create them.
Signing is deterministic, so the same purchase always produces the same key. That means there is no database of customers, and if you lose your key you just look it up again and get the same one back.
Because verification is offline, Pro keeps working with no internet connection, and it keeps working if this project's payment infrastructure ever disappears.
Partitioned attribute cannot be enumerated per top-level site through the extension cookies API, so CookieMop leaves them alone for now. Chrome already isolates them per site, which sharply limits their tracking value.CookieMop makes zero network requests. It has no backend, collects nothing, and stores your settings only in Chrome's own extension storage. See for yourself — the code is all here.
Full privacy policy: https://thoopring.github.io/cookiemop/privacy.html
JavaScript
85.9%
HTML
7.1%
CSS
6.9%