ReconDrop por Faizad Khan
A passive client-side recon tool for security professionals. Scans web pages for exposed API endpoints, secrets, DOM sinks, inline events, and framework fingerprints.
ExperimentalExperimental
Metadata de la extensión
Sobre esta extensión
ReconDrop is a browser-based passive reconnaissance extension designed for penetration testers and security researchers.
Features:
- 🔍 Framework fingerprinting (48 frameworks detected)
- 🔑 Secret detection — AWS keys, JWTs, API tokens
- 🌐 URL & endpoint collection (4-layer deep scan)
- ⚠️ DOM sink detection — innerHTML, eval, document.write
- 🎯 Inline event handler mapping
- 📥 Export all findings as JSON
ReconDrop runs entirely in the page context — no data is sent externally. All results are displayed locally and can be exported for reporting.
Built for use during authorized penetration testing engagements only.
Features:
- 🔍 Framework fingerprinting (48 frameworks detected)
- 🔑 Secret detection — AWS keys, JWTs, API tokens
- 🌐 URL & endpoint collection (4-layer deep scan)
- ⚠️ DOM sink detection — innerHTML, eval, document.write
- 🎯 Inline event handler mapping
- 📥 Export all findings as JSON
ReconDrop runs entirely in the page context — no data is sent externally. All results are displayed locally and can be exported for reporting.
Built for use during authorized penetration testing engagements only.
Rated 5 by 3 reviewers
Permissions and data
Permisos opcionales:
- Acceder a tus datos para todos los sitios web
Data collection:
- The developer says this extension doesn't require data collection.
Más información
- Enlaces del complemento
- Versión
- 3.0
- Tamaño
- 35,96 KB
- Última actualización
- hace 25 días (24 de abr. de 2026)
- Categorías relacionadas
- Licencia
- MIT License
- Historial de versiones
- Añadir a la colección