Jsmon Security Analyzer — Web Security Inspector par Jsmon
Capture and analyze browser traffic in real time. Detects exposed secrets, shadow APIs, and supply chain risks in JS, HTML, JSON, YAML, and 20+ file types. Powered by Jsmon.
34 utilisateurs·trices34 utilisateurs·trices
Métadonnées de l’extension
Captures d’écran
À propos de cette extension
Jsmon Security Analyzer — Browser Extension
Automatically capture and analyze web traffic directly from your browser.
Every JavaScript file, API response, config, and document is sent to
Jsmon's External Attack Surface Management (EASM) engine for real-time
security analysis — no manual uploads, no proxies required.
What it detects
Supported file types
JS · JSX · TS · HTML · PHP · ASPX · CFG · YAML · JSON · XML · ENV ·
INI · TXT · CSV · LOG · SQL · GRAPHQL · WASM · MAP · and more (20+ extensions)
How it works
Who it's for
About Jsmon
Jsmon is an AI-powered External Attack Surface Management platform trusted
by security teams worldwide. Built by practitioners, for practitioners.
🔗 jsmon.sh
Automatically capture and analyze web traffic directly from your browser.
Every JavaScript file, API response, config, and document is sent to
Jsmon's External Attack Surface Management (EASM) engine for real-time
security analysis — no manual uploads, no proxies required.
What it detects
- Exposed secrets — API keys, tokens, credentials leaked in JS or config files
- Shadow APIs — undocumented or forgotten endpoints buried in frontend code
- Supply chain risks — vulnerable or suspicious NPM packages loaded at runtime
- Sensitive data exposure — PII, internal paths, environment variables
- Misconfigured assets — insecure headers, open redirects, debug artifacts
Supported file types
JS · JSX · TS · HTML · PHP · ASPX · CFG · YAML · JSON · XML · ENV ·
INI · TXT · CSV · LOG · SQL · GRAPHQL · WASM · MAP · and more (20+ extensions)
How it works
- Install the extension and connect your Jsmon account
- Browse normally — the extension passively captures traffic
- Matched file types are forwarded to Jsmon for deep analysis
- View findings in your Jsmon dashboard: secrets, APIs, risks, asset inventory
Who it's for
- Security engineers running recon or pen tests on web applications
- AppSec & EASM teams monitoring their organization's external attack surface
- Bug bounty hunters accelerating JS recon workflows
- CISOs & compliance teams enforcing continuous visibility across web assets
About Jsmon
Jsmon is an AI-powered External Attack Surface Management platform trusted
by security teams worldwide. Built by practitioners, for practitioners.
🔗 jsmon.sh
Noté 0 par 1 personne
Autorisations et données
Autorisations nécessaires :
- Accéder aux onglets du navigateur
- Accéder à vos données pour tous les sites web
Plus d’informations
- Version
- 1.5
- Taille
- 2,05 Mo
- Dernière mise à jour
- il y a un jour (3 juin 2026)
- Catégories associées
- Licence
- Licence MIT
- Historique des versions
- Étiquettes
- Ajouter à la collection