Item logo image for Plexicus Indago - Real-time website security audit tool

Plexicus Indago - Real-time website security audit tool

5.0(

1 rating

)
ExtensionDeveloper Tools5 users
Item media 6 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 1 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 2 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 3 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 4 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 5 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 6 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 1 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 1 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 2 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 3 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 4 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 5 (screenshot) for Plexicus Indago - Real-time website security audit tool
Item media 6 (screenshot) for Plexicus Indago - Real-time website security audit tool

Overview

A lightweight web security audit tool for Pentesters and DevSecOps. Automatically audits websites for vulnerabilities as you browse.

Plexicus Indago is a powerful, lightweight web security audit tool built directly into your browser. Designed for security researchers, Pentesters, and DevSecOps engineers, Indago automatically audits the websites you visit to identify underlying vulnerabilities before they can be exploited. From identifying outdated React components to uncovering hardcoded API keys, Indago provides a transparent window into the security posture of any web application. Key Features - Vulnerability Scanner (CVE Integration): Automatically identifies outdated libraries and cross-references them with the CVE (Common Vulnerabilities and Exposures) database to highlight known risks. - React2Shell & Logic Detection: Specialized detection for React-specific vulnerabilities and insecure client-side logic execution. - Secret & Sensitive Data Sniffer: Scans page source and network traffic for hardcoded secrets, including API keys, AWS tokens, and private credentials. - Injection & XSS Guard: Real-time monitoring for Cross-Site Scripting (XSS) risks and potential injection points in forms and URL parameters. - Security Headers: Analyzes CSP, HSTS, X-Frame-Options, and more. - CSRF Protection: Detects missing anti-CSRF tokens on critical actions. Third-Party Script Monitor: Tracks and audits external scripts to prevent supply-chain attacks and unauthorized data exfiltration.

Details

  • Version
    1.0.1
  • Updated
    January 7, 2026
  • Offered by
    Plexicus
  • Size
    226KiB
  • Languages
    English
  • Developer
    Email
    engineering@plexicus.ai
  • Non-trader
    This developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.

Privacy

Plexicus Indago - Real-time website security audit tool has disclosed the following information regarding the collection and usage of your data. More detailed information can be found in the developer's privacy policy.

Plexicus Indago - Real-time website security audit tool handles the following:

Location
Web history
User activity

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes
Google apps