Requests are made server side, which make this unusable for local/dev environnement purpose. Too bad !
So it was a trade-off and I preferred showing all the headers at the expense of having to proxy the calls through a server.
[1] http://www.w3.org/TR/XMLHttpRequest/#the-getallresponseheade...
[2] http://www.w3.org/TR/cors/#cross-origin-request
I will make it available on Github later, so that you at least have the option of running it yourself.
(disclosure: I work for Apiary.io)