Overview
Detects ClickFix patterns and clipboard mismatches.
ClickFix Mitigator is a defensive browser extension that helps prevent social-engineering attacks commonly known as ClickFix. It detects suspicious on-page instruction flows (such as fake “Win+R / Win+X + paste” prompts), clipboard-command mismatch behavior, and related high-risk indicators before execution. Key extension features: Real-time detection of ClickFix-like interaction patterns. Clipboard threat analysis for suspicious command payloads and obfuscation. Domain allow/block controls to tune protection by environment. Optional script-execution lock on blocked pages, with temporary allow options (“allow once” / “allow this session”). Manual report support for suspicious pages and events. ClickFix Mitigator also integrates with a web platform for security operations: Centralized alert triage with verdicts (pending, accepted, rejected) and bulk review actions. Event timeline, grouped domain activity, recurrence markers, and related-alert exploration. Evidence workflow with screenshots (after from extension + server-generated before snapshot), including admin approval. Investigation workspace with role-based access and analyst workflows. Extension messaging and policy controls for managed environments. This project is built for defensive security use: reduce accidental command execution, improve visibility, and speed up incident response. Analyst Registration: https://clickfix.jordiserrano.me
4.2 out of 55 ratings
Details
- Version0.4.9
- UpdatedMarch 10, 2026
- Size552KiB
- Languages12 languages
- DeveloperWebsite
Email
jordiserrano@proton.me - Non-traderThis developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.
Privacy
ClickFix Mitigator has disclosed the following information regarding the collection and usage of your data. More detailed information can be found in the developer's privacy policy.
ClickFix Mitigator handles the following:
This developer declares that your data is
- Not being sold to third parties, outside of the approved use cases
- Not being used or transferred for purposes that are unrelated to the item's core functionality
- Not being used or transferred to determine creditworthiness or for lending purposes
Support
For help with questions, suggestions, or problems, please open this page on your desktop browser