“API Call Detector”的产品徽标图片

API Call Detector

5.0(

2 个评分

)
扩展程序工具107 用户
API Call Detector的项目媒体 2(屏幕截图)
API Call Detector的项目媒体 1(屏幕截图)
API Call Detector的项目媒体 2(屏幕截图)
API Call Detector的项目媒体 1(屏幕截图)
API Call Detector的项目媒体 1(屏幕截图)
API Call Detector的项目媒体 2(屏幕截图)

概述

Security tool to actively detect external API calls made from displayed web page

API Call Detector - Cybersecurity Analysis Tool Identify potential security risks by mapping all external API calls made through JavaScript. This professional-grade extension provides real-time monitoring of web page communications, helping security teams uncover hidden data flows, unauthorized third-party integrations, and potential attack vectors. Key Features: Real-time detection of XMLHttpRequest, Fetch API, and WebSocket connections Automatic filtering of static resources (images/CSS/fonts) Security-focused reporting with domain frequency analysis Exportable audit trails in markdown format Cross-origin call tracking with full URL capture Manifest V3 compliant with strict CSP policies Ideal For: Identifying shadow APIs in enterprise web applications Auditing data flows for GDPR/HIPAA compliance Detecting unauthorized third-party trackers Educational white-hat hacking exercises Penetration testing reconnaissance phases Monitoring client-side supply chain risks Technical Specifications: Operates at document_start phase to capture initializations Content script injection via Chrome extension APIs Background service worker maintains isolated call registry Secure message passing between components Zero data collection/telemetry Use Cases: Vulnerability Assessment: Map all external endpoints contacted during user sessions Incident Response: Quickly identify compromised APIs during breach investigations Third-Party Audit: Document data leakage points to external services Developer Education: Visualize runtime network behavior of SPAs Compliance Reporting: Generate evidence of endpoint security checks Advanced Capabilities: Path-based sorting and domain clustering Automatic deduplication of repeated calls Query parameter stripping for clean analysis Multi-frame tracking (iframes/web workers) Detection bypass prevention through prototype hooks For Security Teams: Prioritize endpoints by call frequency Spot anomalous domains in real-time Export findings to standard threat intelligence formats Integrate with SIEM systems via manual export Development Philosophy: Minimal permissions required (storage, downloads, webNavigation) No background page persistence Strict content security policy enforcement Regular updates to match evolving web standards Open Source Ready: Clean codebase for organizational customization MIT License (contact developer for enterprise terms) Built for extensibility (add custom filters/hooks) Install to gain immediate visibility into client-side network activity and strengthen your organization's web application security posture. Essential for modern cybersecurity defense-in-depth strategies.

5 星(5 星制)2 个评分

详细了解结果和评价。

详情

  • 版本
    1.0
  • 上次更新日期
    2025年3月18日
  • 大小
    53.75KiB
  • 语言
    English
  • 开发者
    Geekus Maximus
    39 N Main St New Castle, KY 40050 US
    网站
    邮箱
    docdaven@gmail.com
  • 非交易者
    该开发者尚未将自己标识为交易者。欧盟地区消费者须知:消费者权利可能不适用于您与该开发者达成的合约。

隐私权

该开发者已披露,此产品不会收集或使用您的数据。 如需了解详情,请参阅开发者的privacy policy

该开发者已声明,您的数据:

  • 不会因未获批准的用途出售给第三方
  • 不会为实现与产品核心功能无关的目的而使用或转移
  • 不会为确定信用度或放贷目的而使用或转移

支持

若有任何疑问、建议或问题,请访问开发者的支持网站

Google 应用