Item logo image for FixClick — ClickFix & Ghost Phishing Guard

FixClick — ClickFix & Ghost Phishing Guard

ExtensionPrivacy & Security
Item media 3 (screenshot) for FixClick — ClickFix & Ghost Phishing Guard
Item media 1 (screenshot) for FixClick — ClickFix & Ghost Phishing Guard
Item media 2 (screenshot) for FixClick — ClickFix & Ghost Phishing Guard
Item media 3 (screenshot) for FixClick — ClickFix & Ghost Phishing Guard
Item media 1 (screenshot) for FixClick — ClickFix & Ghost Phishing Guard
Item media 1 (screenshot) for FixClick — ClickFix & Ghost Phishing Guard
Item media 2 (screenshot) for FixClick — ClickFix & Ghost Phishing Guard
Item media 3 (screenshot) for FixClick — ClickFix & Ghost Phishing Guard

Overview

Detects ClickFix paste-and-run lures and ghost/AiTM Microsoft token-phishing pages. Extensible detector framework.

A cross-browser Manifest V3 extension for Chrome, Edge, Brave, Opera and other Chromium browsers, plus Firefox, that detects two credential/token-theft attack families in the page, in real time, and warns the user: [v1.1.0] — 2026-07-18 Added - Trusted-sites allowlist (false-positive escape hatch). When a warning or the hard-block interstitial appears, you can click **Trust this site** to silence FixClick on that hostname. Trusted hosts produce no finding, no badge, and no overlay. The list is managed from the popup — a new **Trusted sites** section lists every trusted host with a per-host remove button, a **Trust this site** shortcut for the current tab, and **Clear all**. - The allow-list is stored in local browser storage, so it is **sticky across sessions and restarts** but is cleared if you reset the browser's extension / site data. It never leaves your device. ### Changed - Fewer false positives on informational pages. The passive on-page ClickFix heuristic now requires all three signals together — fake "human verification" framing **and** a Run-dialog/terminal/paste instruction **and** actual command-shaped text — instead of accepting the framing or the command alone. Security articles, vendor blogs, and news write-ups that merely *describe* ClickFix (without carrying a live command payload) are no longer flagged. The behavioral clipboard-interception path — which fires when a page actually copies a command to your clipboard — is unchanged.

Details

  • Version
    1.1.0
  • Updated
    July 20, 2026
  • Offered by
    Subnet345LLC
  • Size
    35.62KiB
  • Languages
    English (United States)
  • Developer
    Subnet345 LLC
    1325 Nottingham Ln Hoffman Estates, IL 60169-2640 US
    Email
    jsingleton@subnet345.com
    Phone
    +1 224-385-6577
  • Trader
    This developer has identified itself as a trader per the definition from the European Union and committed to only offer products or services that comply with EU laws.
  • D-U-N-S
    145898426

Privacy

Manage extensions and learn how they're being used in your organization
The developer has disclosed that it will not collect or use your data. To learn more, see the developer’s privacy policy.

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes

Support

For help with questions, suggestions, or problems, visit the developer's support site

Google apps