PhishClean par PhishClean
Privacy-first phishing and token leakage protection. All detection runs locally on your device.
Certaines fonctionnalités peuvent être payantesCertaines fonctionnalités peuvent être payantes
Disponible sur Firefox pour Android™Disponible sur Firefox pour Android™
2 utilisateurs·trices2 utilisateurs·trices
Métadonnées de l’extension
Captures d’écran
À propos de cette extension
PhishClean detects phishing pages, token leaks, and credential theft in real time — entirely inside your browser. No data ever leaves your device.
What it catches:
How it works:
Install and browse normally. PhishClean runs in the background, scanning every page using local pattern matching and heuristics. No cloud lookups, no browsing history transmitted, no tracking. When a threat is detected, you see an on-page warning with a risk score, a plain-English explanation of what was found, and options to go back, ignore, or trust the domain.
Free vs Pro:
The free plan covers basic phishing detection — login page analysis, domain mismatch checks, and form structure scanning. Pro unlocks all 14 detection signals: secret leak scanning, JWT monitoring, hidden iframe detection, HTTPS downgrade alerts, network request analysis, and downloadable PDF threat reports.
Privacy by design:
The only data PhishClean sends to our server is an anonymous install ID and your extension version — used solely for license verification. Zero browsing data, zero page content, zero tokens. Everything else stays on your machine.
Website: https://phishclean.com
Privacy policy: https://phishclean.com/privacy
What it catches:
- Phishing login pages with domain mismatches and suspicious form structures
- Leaked API keys and secrets exposed in page source code (AWS, Google Cloud, Stripe, GitHub, Firebase, and more)
- JWT tokens exposed in URLs, localStorage, or network requests
- Hidden iframes used for clickjacking and session hijacking
- HTTPS-to-HTTP downgrade attacks that strip your encryption
- Authorization headers silently sent to third-party domains
- Passwords submitted over unencrypted HTTP connections
How it works:
Install and browse normally. PhishClean runs in the background, scanning every page using local pattern matching and heuristics. No cloud lookups, no browsing history transmitted, no tracking. When a threat is detected, you see an on-page warning with a risk score, a plain-English explanation of what was found, and options to go back, ignore, or trust the domain.
Free vs Pro:
The free plan covers basic phishing detection — login page analysis, domain mismatch checks, and form structure scanning. Pro unlocks all 14 detection signals: secret leak scanning, JWT monitoring, hidden iframe detection, HTTPS downgrade alerts, network request analysis, and downloadable PDF threat reports.
Privacy by design:
The only data PhishClean sends to our server is an anonymous install ID and your extension version — used solely for license verification. Zero browsing data, zero page content, zero tokens. Everything else stays on your machine.
Website: https://phishclean.com
Privacy policy: https://phishclean.com/privacy
Noté 5 par 2 personnes
Autorisations et données
Autorisations nécessaires :
- Accéder aux onglets du navigateur
- Accéder à l’activité du navigateur pendant la navigation
- Accéder à vos données pour tous les sites web
Autorisations facultatives :
- Accéder à vos données pour tous les sites web
Collecte de données :
- Le développeur indique que cette extension n’a pas besoin de collecter de données.
Plus d’informations
- Liens du module
- Version
- 1.1.5
- Taille
- 167,32 Ko
- Dernière mise à jour
- il y a 10 jours (24 mai 2026)
- Catégories associées
- Licence
- Tous droits réservés
- Politique de confidentialité
- Lire la politique de confidentialité de ce module
- Historique des versions
- Étiquettes
- Ajouter à la collection