Hacksudo-CSP Headers Checker par Hacksudo
Hacksudo: Checks Content Security Policy (CSP) and common security headers, highlighting missing or weak configurations based on OWASP best practices.
ExpérimentalExpérimental
2 utilisateurs·trices2 utilisateurs·trices
MĂ©tadonnĂ©es de lâextension
Ă propos de cette extension
đ Hacksudo CSP & Security Headers Checker
Hacksudo CSP & Security Headers Checker is a lightweight security auditing extension designed for developers, security engineers, and penetration testers.
It analyzes the active webpage and reports:
đĄ Content Security Policy (CSP)
đ Security Headers Analysis
The extension checks for modern security headers commonly recommended by OWASP:
Each header is categorized as:
đŻ Use Cases
đ Privacy & Data Collection
This extension does not collect, store, or transmit any user data.
All analysis is performed locally in the browser.
Hacksudo CSP & Security Headers Checker is a lightweight security auditing extension designed for developers, security engineers, and penetration testers.
It analyzes the active webpage and reports:
đĄ Content Security Policy (CSP)
- Detects CSP header and meta CSP
- Lists configured directives
- Highlights missing critical directives:
default-srcscript-srcobject-srcbase-uriframe-ancestors- Flags weak configurations such as:
unsafe-inlineunsafe-eval- Wildcard (
*) usage - Missing clickjacking protection
đ Security Headers Analysis
The extension checks for modern security headers commonly recommended by OWASP:
- Content-Security-Policy
- Strict-Transport-Security (HSTS)
- X-Frame-Options
- X-Content-Type-Options
- Referrer-Policy
- Permissions-Policy
- Cross-Origin-Opener-Policy (COOP)
- Cross-Origin-Embedder-Policy (COEP)
- Cross-Origin-Resource-Policy (CORP)
Each header is categorized as:
- â Set
- â Missing
- đŽ Weak configuration
đŻ Use Cases
- Web application security testing
- VAPT assessments
- Quick client-side header verification
- Secure development validation
- Learning CSP and browser hardening
đ Privacy & Data Collection
This extension does not collect, store, or transmit any user data.
All analysis is performed locally in the browser.
Noté 5 par 1 personne
Autorisations et données
Autorisations nécessaires :
- Accéder aux onglets du navigateur
- Accéder à vos données pour tous les sites web
Collecte de données :
- Le dĂ©veloppeur indique que cette extension nâa pas besoin de collecter de donnĂ©es.
Plus dâinformations
- Liens du module
- Version
- 3.0
- Taille
- 17,96Â Ko
- DerniĂšre mise Ă jour
- il y a 3 mois (12 févr. 2026)
- Catégories associées
- Licence
- Mozilla Public License 2.0
- Historique des versions
- Ătiquettes
- Ajouter Ă la collection