Mobile Interceptor (PT) sɣur SolidLeoz
HTTP request interceptor and repeater for authorized penetration testing on Firefox Android. Capture, inspect, modify and replay HTTP traffic from scoped target domains.
ArmitanArmitan
Yella ɣef Firefox i Android™Yella ɣef Firefox i Android™
8 yiseqdacen8 yiseqdacen
Asiɣzef aɣefisefka
Tuṭṭfiwin n wegdil
Ɣef usiɣzef agi
Mobile Interceptor (PT) is a mobile-first HTTP traffic interceptor designed for
authorized penetration testing on Firefox Android.
Features:
- INTERCEPT mode — Block HTTP requests, inspect and edit them (method, URL,
headers, body), then forward or drop
- OBSERVE mode — Passively capture traffic without blocking (read-only)
- Repeater — Save and replay requests with modifications for manual testing
- Notes — Save request/response pairs for later analysis
- Scope control — Allowlist-based domain filtering (default-deny: nothing is
intercepted until you configure targets)
- Audit log — Track all actions (forward, drop, mode changes, policy changes)
Security & Privacy:
- All data stored locally only (browser.storage.local) — no remote servers, no
telemetry
- Sensitive headers (Authorization, Cookie, etc.) are automatically redacted in
display and export
- Rate limiting on request replay
- Retention limits on all stored data (notes, repeater, audit log)
- OFF by default — no interception until explicitly enabled by the user
Important: This tool is intended exclusively for authorized security testing.
Only use it on systems you have explicit permission to test.
authorized penetration testing on Firefox Android.
Features:
- INTERCEPT mode — Block HTTP requests, inspect and edit them (method, URL,
headers, body), then forward or drop
- OBSERVE mode — Passively capture traffic without blocking (read-only)
- Repeater — Save and replay requests with modifications for manual testing
- Notes — Save request/response pairs for later analysis
- Scope control — Allowlist-based domain filtering (default-deny: nothing is
intercepted until you configure targets)
- Audit log — Track all actions (forward, drop, mode changes, policy changes)
Security & Privacy:
- All data stored locally only (browser.storage.local) — no remote servers, no
telemetry
- Sensitive headers (Authorization, Cookie, etc.) are automatically redacted in
display and export
- Rate limiting on request replay
- Retention limits on all stored data (notes, repeater, audit log)
- OFF by default — no interception until explicitly enabled by the user
Important: This tool is intended exclusively for authorized security testing.
Only use it on systems you have explicit permission to test.
Rated 5 by 1 reviewer
Tisirag akked yisefka
Yesra tisirag:
- Kcem γer icarren n iminig
- Kcem ɣer isefka-inek deg ismal web meṛṛa
Alqaḍ n yisefka:
- Aneflay yenna-d asiɣzef-a ur yeḥwaǧ ara alqaḍ n yisefka.
Ugar n telɣut
- TigIseɣwan n uzegrir
- Lqem
- 0.2.1
- Teɣzi
- 47,39 KB
- Aleqqem aneggaru
- 2 månader sidan (9. feb. 2026)
- Taggayin i ilan assaɣ
- Turagt
- Turagt IT
- Amazray n Lqem
- Rnu ar tegrumma
documentation and security policy available on GitHub:
https://github.com/SolidLeoz/ff-android-interceptor