Hacksudo-CSP Headers Checker par Hacksudo
Hacksudo: Checks Content Security Policy (CSP) and common security headers, highlighting missing or weak configurations based on OWASP best practices.
Métadonnées de l’extension
À propos de cette extension
🔐 Hacksudo CSP & Security Headers Checker
Hacksudo CSP & Security Headers Checker is a lightweight security auditing extension designed for developers, security engineers, and penetration testers.
It analyzes the active webpage and reports:
🛡 Content Security Policy (CSP)
🔎 Security Headers Analysis
The extension checks for modern security headers commonly recommended by OWASP:
Each header is categorized as:
🎯 Use Cases
🔐 Privacy & Data Collection
This extension does not collect, store, or transmit any user data.
All analysis is performed locally in the browser.
Hacksudo CSP & Security Headers Checker is a lightweight security auditing extension designed for developers, security engineers, and penetration testers.
It analyzes the active webpage and reports:
🛡 Content Security Policy (CSP)
- Detects CSP header and meta CSP
- Lists configured directives
- Highlights missing critical directives:
default-srcscript-srcobject-srcbase-uriframe-ancestors- Flags weak configurations such as:
unsafe-inlineunsafe-eval- Wildcard (
*) usage - Missing clickjacking protection
🔎 Security Headers Analysis
The extension checks for modern security headers commonly recommended by OWASP:
- Content-Security-Policy
- Strict-Transport-Security (HSTS)
- X-Frame-Options
- X-Content-Type-Options
- Referrer-Policy
- Permissions-Policy
- Cross-Origin-Opener-Policy (COOP)
- Cross-Origin-Embedder-Policy (COEP)
- Cross-Origin-Resource-Policy (CORP)
Each header is categorized as:
- ✅ Set
- ⚠ Missing
- 🔴 Weak configuration
🎯 Use Cases
- Web application security testing
- VAPT assessments
- Quick client-side header verification
- Secure development validation
- Learning CSP and browser hardening
🔐 Privacy & Data Collection
This extension does not collect, store, or transmit any user data.
All analysis is performed locally in the browser.
Noté 5 par 1 personne
Autorisations et données
Autorisations nécessaires :
- Accéder aux onglets du navigateur
- Accéder à vos données pour tous les sites web
Collecte de données :
- Le développeur indique que cette extension n’a pas besoin de collecter de données.
Plus d’informations
- Liens du module
- Version
- 3.0
- Taille
- 17,96 Ko
- Dernière mise à jour
- il y a 4 mois (12 févr. 2026)
- Catégories associées
- Licence
- Mozilla Public License 2.0
- Historique des versions
- Étiquettes
- Ajouter à la collection