GeoLock by MaZy
Per-page request firewall with geoip, geosite, sing-box rule-set, domain regex, and IP range rules
Available on Firefox for Android™Available on Firefox for Android™
1 User1 User
Scan the QR code to open this extension in Firefox for Android
Extension Metadata
Screenshots
About this extension
GeoLock is a Firefox extension that blocks or allows requests with per-page rules: geoip country, geosite category, sing-box rule-sets, domain regex, and IP ranges.
How it works
Every time a page loads something — a script, an image, an API call — GeoLock checks your rules and lets it through or stops it.
A rule pairs a source (the page making the request) with a destination (what it's loading). If both match, the rule fires with its action: allow or block.
Rules run top to bottom. The first match wins. If nothing matches, your default action applies.
Example rules:
• When on a US site, block resources resolving to non-US IPs
• Allow only known CDNs on a sensitive site
• Block all traffic between two countries with one isolate rule
Matchers
• geoip — country of the resolved IP (v2fly geoip.dat)
• geosite — domain category like google, category-ads-all (v2fly geosite.dat)
• rule-set — sing-box rule-set, binary .srs or JSON source format
• domain — regex against the hostname
• url — regex against the full URL
• ip — CIDR range, IPv4 or IPv6
• any — matches everything
• and / or / not — combine the above
Features
• Bidirectional rules — fire in both source↔destination directions
• Isolate rules — define one boundary (say, "US") and fire whenever traffic crosses it
• Data sources by URL — geoip/geosite databases and any number of named sing-box rule-sets, auto-updated on a schedule
• Remote configuration — fetch and apply your config from a URL
• Built-in rule tester, per-page block log with match traces
• Raw JSON editor, import/export, one-click reset
• In-memory DNS cache, no telemetry
Source: https://github.com/mazzz1y/geolock
How it works
Every time a page loads something — a script, an image, an API call — GeoLock checks your rules and lets it through or stops it.
A rule pairs a source (the page making the request) with a destination (what it's loading). If both match, the rule fires with its action: allow or block.
Rules run top to bottom. The first match wins. If nothing matches, your default action applies.
Example rules:
• When on a US site, block resources resolving to non-US IPs
• Allow only known CDNs on a sensitive site
• Block all traffic between two countries with one isolate rule
Matchers
• geoip — country of the resolved IP (v2fly geoip.dat)
• geosite — domain category like google, category-ads-all (v2fly geosite.dat)
• rule-set — sing-box rule-set, binary .srs or JSON source format
• domain — regex against the hostname
• url — regex against the full URL
• ip — CIDR range, IPv4 or IPv6
• any — matches everything
• and / or / not — combine the above
Features
• Bidirectional rules — fire in both source↔destination directions
• Isolate rules — define one boundary (say, "US") and fire whenever traffic crosses it
• Data sources by URL — geoip/geosite databases and any number of named sing-box rule-sets, auto-updated on a schedule
• Remote configuration — fetch and apply your config from a URL
• Built-in rule tester, per-page block log with match traces
• Raw JSON editor, import/export, one-click reset
• In-memory DNS cache, no telemetry
Source: https://github.com/mazzz1y/geolock
Rated 5 by 1 reviewer
Permissions and data
Required permissions:
- Access browser activity during navigation
Optional permissions:
- Access your data for all websites
Data collection:
- The developer says this extension doesn't require data collection.
More information
- Add-on Links
- Version
- 2.2.0
- Size
- 87.76 KB
- Last updated
- 9 days ago (Jul 18, 2026)
- Related Categories
- License
- MIT License
- Version History
- Add to collection