Item logo image for Frontguard by Pubflow

Frontguard by Pubflow

ExtensionDeveloper Tools
Item media 1 (screenshot) for Frontguard by Pubflow

Overview

Friendly client-side security audits for modern web apps.

Frontguard is a local-first client-side security scanner for modern web apps. It helps developers review browser-visible risks before they become production incidents. Use Frontguard to scan the current tab for exposed secrets, public frontend environment variables, risky client-side storage, security header gaps, framework signals, BaaS/auth configuration, and suspicious network behavior. Frontguard supports safe passive scans and opt-in deep active scans. Safe scans inspect loaded assets, storage, visible cookies, headers, and resource signals without replaying requests or modifying data. Deep active scans only start when you explicitly enable them, then locally observe fetch/XHR traffic while you use the app. What Frontguard can help detect: Exposed API keys and secret-like values: Supabase, Firebase, Clerk, Auth0, Cognito, Appwrite, Hasura, Sanity, and Contentful client-side signals Stripe publishable vs secret key exposure Public frontend env variables such as VITE_*, NEXT_PUBLIC_*, PUBLIC_*, REACT_APP_*, and more Sensitive data in browser storage Request/response patterns that may expose auth, billing, tenant, role, or user data GraphQL and introspection signals Missing or weak security headers such as CSP, HSTS, Referrer-Policy, Permissions-Policy, and CORS IndexedDB and Cache Storage persistence signals Framework signals for Vite, React, Next.js, Nuxt, SvelteKit, Astro, Angular, and others Frontguard is designed to be friendly, defensive, and non-invasive. It does not brute force, replay requests, submit forms, mutate data, or upload scan evidence. Results stay local in your browser, and sensitive values are masked by default. Built by Pubflow for developers who want clearer client-side security reviews without vendor lock-in.

Details

  • Version
    0.1.0
  • Updated
    May 16, 2026
  • Size
    199KiB
  • Languages
    English
  • Developer
    Pubflow, Inc.
    16192 Coastal Hwy Lewes, DE 19958-3608 US
    Website
    Email
    contact@pubflow.com
    Phone
    +1 650-505-0434
  • Trader
    This developer has identified itself as a trader per the definition from the European Union and committed to only offer products or services that comply with EU laws.
  • D-U-N-S
    119082110

Privacy

Manage extensions and learn how they're being used in your organization

Frontguard by Pubflow has disclosed the following information regarding the collection and usage of your data. More detailed information can be found in the developer's privacy policy.

Frontguard by Pubflow handles the following:

Authentication information
Web history
User activity
Website content

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes
Google apps