ReconDrop av Faizad Khan
A passive client-side recon tool for security professionals. Scans web pages for exposed API endpoints, secrets, DOM sinks, inline events, and framework fingerprints.
Metadata for utvidingar
Om denne utvidinga
ReconDrop is a browser-based passive reconnaissance extension designed for penetration testers and security researchers.
Features:
- 🔍 Framework fingerprinting (48 frameworks detected)
- 🔑 Secret detection — AWS keys, JWTs, API tokens
- 🌐 URL & endpoint collection (4-layer deep scan)
- ⚠️ DOM sink detection — innerHTML, eval, document.write
- 🎯 Inline event handler mapping
- 📥 Export all findings as JSON
ReconDrop runs entirely in the page context — no data is sent externally. All results are displayed locally and can be exported for reporting.
Built for use during authorized penetration testing engagements only.
Features:
- 🔍 Framework fingerprinting (48 frameworks detected)
- 🔑 Secret detection — AWS keys, JWTs, API tokens
- 🌐 URL & endpoint collection (4-layer deep scan)
- ⚠️ DOM sink detection — innerHTML, eval, document.write
- 🎯 Inline event handler mapping
- 📥 Export all findings as JSON
ReconDrop runs entirely in the page context — no data is sent externally. All results are displayed locally and can be exported for reporting.
Built for use during authorized penetration testing engagements only.
Vurdert 5 av 3 meldarar
Løyve og data
Valfrie løyve:
- Tilgang tiil dataa dine frå alle nettsider
Datainnsamling:
- Utviklaren seier at denne utvidinga ikkje krev datainnsamling.
Meir informasjon
- Lenker for tillegg
- Versjon
- 3.0
- Storleik
- 35,96 KB
- Sist oppdatert
- ein månad sidan (24. apr. 2026)
- Liknande kategoriar
- Lisens
- MIT-lisens
- Versjonshistorikk
- Legg til i samling