Item logo image for JS Finder

JS Finder

Item media 3 (screenshot) for JS Finder
Item media 1 (screenshot) for JS Finder
Item media 2 (screenshot) for JS Finder
Item media 3 (screenshot) for JS Finder
Item media 1 (screenshot) for JS Finder
Item media 1 (screenshot) for JS Finder
Item media 2 (screenshot) for JS Finder
Item media 3 (screenshot) for JS Finder

Overview

Scan JavaScript files on any webpage and extract endpoints, APIs, and URLs for security research and development analysis.

**JS Finder** is a fast, local tool built for web developers, QA engineers, and security researchers to map out an application's client-side attack surface directly from the browser. Instead of wasting time digging through minified, obfuscated scripts, JS Finder handles the recon for you by scanning and extracting endpoints on the fly. ### Core Features: * **Deep Code Scanning:** Instantly reads all external `<script src="...">` source files and inline JavaScript execution blocks on the active webpage. * **High-Fidelity Regex Engine:** Automatically parses and discovers hidden REST API routes, fully-qualified remote URLs, application paths, and WebSocket connection endpoints. * **Smart Sorting & Filtering:** Instantly categorizes findings into dedicated types: APIs, Javascript files, Images, WebSockets, or Other generic links. * **Live Search:** Quickly filter down thousands of compiled matches using the real-time search field. * **Instant Exporting:** Copy your target list straight to your clipboard or download the results as cleanly formatted JSON, CSV, or TXT files for seamless ingestion into web proxies or reporting tools. ### Privacy-First: All static analysis is executed completely locally on your machine. JS Finder never tracks your activity, collects user data, or communicates with external servers. It runs purely inside your active tab instance to keep your research fast and secure.

Details

  • Version
    1.0.1
  • Updated
    July 9, 2026
  • Size
    16.42KiB
  • Languages
    English
  • Developer
    Email
    omaralgbry1@gmail.com
  • Non-trader
    This developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.

Privacy

Manage extensions and learn how they're being used in your organization
The developer has disclosed that it will not collect or use your data.

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes

Related

API finder

5.0

Passive API discovery tool for security testers. Discovers API endpoints from browser traffic, flags risks, exports OpenAPI/Postman.

Feroot PageScanner

5.0

Every tracker, cookie, script, and API on any page. Export report for audit, investigation or lawsuit: GDPR, CIPA, CCPA, HIPAA, PCI

Weblyzer - Web Analyzer

0.0

Detect the front-end, back-end, CDN, hosting and API technologies behind any website - all locally in your browser.

Secret Scanner

5.0

Scan web pages for API keys or passwords

Malware & Vulnerability Scanner

0.0

A Chrome extension for scanning files, URLs, and analyzing CVE vulnerabilities

rep+

5.0

rep+ - Capture, modify, and replay HTTP requests in Chrome DevTools with AI-powered security analysis.

JSner - Endpoint Extractor

0.0

Advanced endpoint scanner with verification. Extract and test API endpoints, GraphQL queries, and more from any website.

Retire.JS

4.2

Scanning website for vulnerable js libraries. Icon by studiomx

OSINT Research Assistant

0.0

Page triage, pivot graph and STIX export. 16 free threat intel sources, optional keys. Nothing leaves your device.

Hx0 DateGuard

5.0

Local sensitive-data and phishing-email detection with page/API scanning, leak guard, rules, and reports.

Jsmon Extension

5.0

Security Scans on your browser's network history in the background

CyberPost Lab

5.0

A fully offline, browser-based HTTP request testing tool for cybersecurity researchers

API finder

5.0

Passive API discovery tool for security testers. Discovers API endpoints from browser traffic, flags risks, exports OpenAPI/Postman.

Feroot PageScanner

5.0

Every tracker, cookie, script, and API on any page. Export report for audit, investigation or lawsuit: GDPR, CIPA, CCPA, HIPAA, PCI

Weblyzer - Web Analyzer

0.0

Detect the front-end, back-end, CDN, hosting and API technologies behind any website - all locally in your browser.

Secret Scanner

5.0

Scan web pages for API keys or passwords

Malware & Vulnerability Scanner

0.0

A Chrome extension for scanning files, URLs, and analyzing CVE vulnerabilities

rep+

5.0

rep+ - Capture, modify, and replay HTTP requests in Chrome DevTools with AI-powered security analysis.

JSner - Endpoint Extractor

0.0

Advanced endpoint scanner with verification. Extract and test API endpoints, GraphQL queries, and more from any website.

Retire.JS

4.2

Scanning website for vulnerable js libraries. Icon by studiomx

Google apps