Hacksudo-CSP Headers Checker od Hacksudo
Hacksudo: Checks Content Security Policy (CSP) and common security headers, highlighting missing or weak configurations based on OWASP best practices.
ExperimentálníExperimentální
Metadata rozšíření
O tomto rozšíření
🔐 Hacksudo CSP & Security Headers Checker
Hacksudo CSP & Security Headers Checker is a lightweight security auditing extension designed for developers, security engineers, and penetration testers.
It analyzes the active webpage and reports:
🛡 Content Security Policy (CSP)
🔎 Security Headers Analysis
The extension checks for modern security headers commonly recommended by OWASP:
Each header is categorized as:
🎯 Use Cases
🔐 Privacy & Data Collection
This extension does not collect, store, or transmit any user data.
All analysis is performed locally in the browser.
Hacksudo CSP & Security Headers Checker is a lightweight security auditing extension designed for developers, security engineers, and penetration testers.
It analyzes the active webpage and reports:
🛡 Content Security Policy (CSP)
- Detects CSP header and meta CSP
- Lists configured directives
- Highlights missing critical directives:
default-srcscript-srcobject-srcbase-uriframe-ancestors- Flags weak configurations such as:
unsafe-inlineunsafe-eval- Wildcard (
*) usage - Missing clickjacking protection
🔎 Security Headers Analysis
The extension checks for modern security headers commonly recommended by OWASP:
- Content-Security-Policy
- Strict-Transport-Security (HSTS)
- X-Frame-Options
- X-Content-Type-Options
- Referrer-Policy
- Permissions-Policy
- Cross-Origin-Opener-Policy (COOP)
- Cross-Origin-Embedder-Policy (COEP)
- Cross-Origin-Resource-Policy (CORP)
Each header is categorized as:
- ✅ Set
- ⚠ Missing
- 🔴 Weak configuration
🎯 Use Cases
- Web application security testing
- VAPT assessments
- Quick client-side header verification
- Secure development validation
- Learning CSP and browser hardening
🔐 Privacy & Data Collection
This extension does not collect, store, or transmit any user data.
All analysis is performed locally in the browser.
Hodnocení: 5 od 1 redaktora
Oprávnění a data
Požadovaná oprávnění:
- Přistupovat k panelům prohlížeče
- Přistupovat k vašim datům pro všechny webové stránky
Sběr dat:
- Podle vývojáře toto rozšíření nevyžaduje sběr dat.
Další informace
- Odkazy doplňku
- Verze
- 3.0
- Velikost
- 17,96 KB
- Poslední aktualizace
- před 7 dny (12. úno 2026)
- Příbuzné kategorie
- Licence
- Mozilla Public License 2.0
- Historie změn
- Štítky
- Přidat do sbírky