Hacksudo-CSP Headers Checker por Hacksudo
Hacksudo: Checks Content Security Policy (CSP) and common security headers, highlighting missing or weak configurations based on OWASP best practices.
ExperimentalExperimental
Metadados da extensão
Acerca desta extensão
🔐 Hacksudo CSP & Security Headers Checker
Hacksudo CSP & Security Headers Checker is a lightweight security auditing extension designed for developers, security engineers, and penetration testers.
It analyzes the active webpage and reports:
🛡 Content Security Policy (CSP)
🔎 Security Headers Analysis
The extension checks for modern security headers commonly recommended by OWASP:
Each header is categorized as:
🎯 Use Cases
🔐 Privacy & Data Collection
This extension does not collect, store, or transmit any user data.
All analysis is performed locally in the browser.
Hacksudo CSP & Security Headers Checker is a lightweight security auditing extension designed for developers, security engineers, and penetration testers.
It analyzes the active webpage and reports:
🛡 Content Security Policy (CSP)
- Detects CSP header and meta CSP
- Lists configured directives
- Highlights missing critical directives:
default-srcscript-srcobject-srcbase-uriframe-ancestors- Flags weak configurations such as:
unsafe-inlineunsafe-eval- Wildcard (
*) usage - Missing clickjacking protection
🔎 Security Headers Analysis
The extension checks for modern security headers commonly recommended by OWASP:
- Content-Security-Policy
- Strict-Transport-Security (HSTS)
- X-Frame-Options
- X-Content-Type-Options
- Referrer-Policy
- Permissions-Policy
- Cross-Origin-Opener-Policy (COOP)
- Cross-Origin-Embedder-Policy (COEP)
- Cross-Origin-Resource-Policy (CORP)
Each header is categorized as:
- ✅ Set
- ⚠ Missing
- 🔴 Weak configuration
🎯 Use Cases
- Web application security testing
- VAPT assessments
- Quick client-side header verification
- Secure development validation
- Learning CSP and browser hardening
🔐 Privacy & Data Collection
This extension does not collect, store, or transmit any user data.
All analysis is performed locally in the browser.
Rated 5 by 1 reviewer
Permissions and data
Permissões necessárias:
- Aceder aos separadores do navegador
- Aceder aos seus dados para todos os sites
Data collection:
- The developer says this extension doesn't require data collection.
Mais informação
- Ligações do extra
- Versão
- 3.0
- Tamanho
- 17,96 KB
- Última atualização
- há 21 dias (12 de fev de 2026)
- Categorias relacionadas
- Licença
- Licença Pública Mozilla 2.0
- Histórico de versões
- Etiquetas
- Adicionar à coleção