Item logo image for SecLens

SecLens

Item media 4 (screenshot) for SecLens
Item media 1 (screenshot) for SecLens
Item media 2 (screenshot) for SecLens
Item media 3 (screenshot) for SecLens
Item media 4 (screenshot) for SecLens
Item media 1 (screenshot) for SecLens
Item media 1 (screenshot) for SecLens
Item media 2 (screenshot) for SecLens
Item media 3 (screenshot) for SecLens
Item media 4 (screenshot) for SecLens

Overview

Full HTTP security header audit — CSP, HSTS, CORS, SRI, and 15+ checks with live DevTools panel

SecLens audits the HTTP security headers of any website you visit — instantly, in your browser. Open the popup for a quick summary, or the DevTools panel (F12 → SecLens) for a full real-time breakdown as the page loads. Checks include: - Content Security Policy (CSP) — parsed and evaluated using Google's csp-evaluator library - HSTS — max-age, includeSubDomains, preload - CORS misconfiguration detection - Subresource Integrity (SRI) — grouped by registered domain - X-Content-Type-Options, X-Frame-Options - Referrer-Policy, Permissions-Policy - COOP, COEP, CORP - Cache-Control on API responses - Tech stack info disclosure (Server header) - Report-Only CSP detection - Multiple conflicting CSP headers Built for developers and security engineers who want instant visibility into a site's header posture without opening Burp or running a separate scanner. No data leaves your browser. No accounts. No tracking.

Details

  • Version
    1.0.0
  • Updated
    May 22, 2026
  • Offered by
    Swastiktube007
  • Size
    103KiB
  • Languages
    English
  • Developer
    Email
    swastiktube007@gmail.com
  • Non-trader
    This developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.

Privacy

Manage extensions and learn how they're being used in your organization
The developer has disclosed that it will not collect or use your data. To learn more, see the developer’s privacy policy.

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes

Related

nekuda WebMCP Workbench

5.0

WebMCP devtools + AI assistant: inspect, run, eval and audit your page's tools - then chat with any site through them.

Feroot PageScanner

5.0

Every tracker, cookie, script, and API on any page. Export report for audit, investigation or lawsuit: GDPR, CIPA, CCPA, HIPAA, PCI

Security Header Scanner

0.0

Analyze HTTP security headers of any website and get an instant security grade with detailed recommendations.

CSP Unblock

4.0

No more Content-Security-Policy limitations. This extension removes all CSP-related headers during website testing.

SSL Checker by SSLHub.store

5.0

Swiftly diagnose, validate, and fix SSL issues for web security! Explore SSL Checker by SSLHub for rapid certificate analysis.

Spyboy CyberSuite

5.0

Web security auditing and penetration testing companion for developers. Features web recon, cookie audits, and OSINT tools.

UnderTheHood - Check Which Technology Is Behind Any Website

5.0

See what any website is built with: detect its full tech stack, 500+ technologies, plus security, SEO & speed checks.

HTTP Header Inspector - Response Headers & Status Checker

4.0

View HTTP headers, status codes, CORS & security headers without DevTools. Debug API, XHR/fetch requests instantly.

WebMCP Ready Checker

4.0

Checks if a website is WebMCP ready — validates tools, contracts, forms, and security.

BrowserLeaks — Privacy & Fingerprint Scanner

0.0

Browser fingerprint, WebRTC/DNS leak tests, and privacy tools — the full BrowserLeaks site in your browser side panel.

CSP Evaluator

3.1

CSP Evaluator is a tool that allows developers to check if a Content Security Policy (CSP) serves as mitigation against XSS attacks.

CyberPost Lab

5.0

A fully offline, browser-based HTTP request testing tool for cybersecurity researchers

nekuda WebMCP Workbench

5.0

WebMCP devtools + AI assistant: inspect, run, eval and audit your page's tools - then chat with any site through them.

Feroot PageScanner

5.0

Every tracker, cookie, script, and API on any page. Export report for audit, investigation or lawsuit: GDPR, CIPA, CCPA, HIPAA, PCI

Security Header Scanner

0.0

Analyze HTTP security headers of any website and get an instant security grade with detailed recommendations.

CSP Unblock

4.0

No more Content-Security-Policy limitations. This extension removes all CSP-related headers during website testing.

SSL Checker by SSLHub.store

5.0

Swiftly diagnose, validate, and fix SSL issues for web security! Explore SSL Checker by SSLHub for rapid certificate analysis.

Spyboy CyberSuite

5.0

Web security auditing and penetration testing companion for developers. Features web recon, cookie audits, and OSINT tools.

UnderTheHood - Check Which Technology Is Behind Any Website

5.0

See what any website is built with: detect its full tech stack, 500+ technologies, plus security, SEO & speed checks.

HTTP Header Inspector - Response Headers & Status Checker

4.0

View HTTP headers, status codes, CORS & security headers without DevTools. Debug API, XHR/fetch requests instantly.

Google apps