DOM XSS Highlighter — Pro
Highlights user-controlled reflections in DOM to help detect risky contexts. Run only on sites you own or may test.
Stop manually searching source code. Start hunting. LPR (Live Params & Redirects) is an all-in-one reconnaissance and…
查看最近 30 天的用户变化。
按时间查看评分波动,辅助判断近期口碑是否稳定。
同口径展示 1 天、7 天、30 天的绝对增长与增长率。
查看发布时间、版本、支持语言、最近更新和抓取时间。
查看插件说明、主要功能和适用场景。
Stop manually searching source code. Start hunting.
LPR (Live Params & Redirects) is an all-in-one reconnaissance and vulnerability scanning assistant designed for Bug Bounty Hunters, Penetration Testers, and Web Developers.
Instead of wasting time inspecting elements and grepping through minified JavaScript files, LPR automatically extracts and categorizes every potential injection point and hidden asset on the page.
🚀 Key Features:
🕵️♂️ Deep Parameter Extraction: Automatically scrapes parameters from HTML forms, DOM inputs, and JavaScript variables (var, let, const).
🔗 Advanced Asset Discovery: Digs into external .js files to find full URLs (S3 buckets, API endpoints) and hidden Routes (e.g., /api/v1/admin) that are invisible in the UI.
查看最近评论和评分分布。
Chrome 商店显示有 5 条评论, 但 ExtScope 当前只同步到了 0条评论正文。这里先展示已同步的评论,后续会继续补齐。
查看 Chrome 商店详情页中的相关产品。
Highlights user-controlled reflections in DOM to help detect risky contexts. Run only on sites you own or may test.
Adds a widget to GitLab merge request page showing vulnerabilities detected by Container Scanning.
Analyze page scripts for bug bounty reconnaissance.
Professional bug hunting and penetration testing toolkit with essential security tools
Reconnaissance toolkit for Wayback Machine archives. Extract URLs, subdomains, parameters, and sensitive files.
CyberPad: Your Ultimate Security, Development & Pen-testing Notepad