Mobile Interceptor (PT) by SolidLeoz
HTTP request interceptor and repeater for authorized penetration testing on Firefox Android. Capture, inspect, modify and replay HTTP traffic from scoped target domains.
ExperimentalExperimental
Available on Firefox for Android™Available on Firefox for Android™
Extension Metadata
Screenshots
About this extension
Mobile Interceptor (PT) is a mobile-first HTTP traffic interceptor designed for
authorized penetration testing on Firefox Android.
Features:
- INTERCEPT mode — Block HTTP requests, inspect and edit them (method, URL,
headers, body), then forward or drop
- OBSERVE mode — Passively capture traffic without blocking (read-only)
- Repeater — Save and replay requests with modifications for manual testing
- Notes — Save request/response pairs for later analysis
- Scope control — Allowlist-based domain filtering (default-deny: nothing is
intercepted until you configure targets)
- Audit log — Track all actions (forward, drop, mode changes, policy changes)
Security & Privacy:
- All data stored locally only (browser.storage.local) — no remote servers, no
telemetry
- Sensitive headers (Authorization, Cookie, etc.) are automatically redacted in
display and export
- Rate limiting on request replay
- Retention limits on all stored data (notes, repeater, audit log)
- OFF by default — no interception until explicitly enabled by the user
Important: This tool is intended exclusively for authorized security testing.
Only use it on systems you have explicit permission to test.
authorized penetration testing on Firefox Android.
Features:
- INTERCEPT mode — Block HTTP requests, inspect and edit them (method, URL,
headers, body), then forward or drop
- OBSERVE mode — Passively capture traffic without blocking (read-only)
- Repeater — Save and replay requests with modifications for manual testing
- Notes — Save request/response pairs for later analysis
- Scope control — Allowlist-based domain filtering (default-deny: nothing is
intercepted until you configure targets)
- Audit log — Track all actions (forward, drop, mode changes, policy changes)
Security & Privacy:
- All data stored locally only (browser.storage.local) — no remote servers, no
telemetry
- Sensitive headers (Authorization, Cookie, etc.) are automatically redacted in
display and export
- Rate limiting on request replay
- Retention limits on all stored data (notes, repeater, audit log)
- OFF by default — no interception until explicitly enabled by the user
Important: This tool is intended exclusively for authorized security testing.
Only use it on systems you have explicit permission to test.
Rated 5 by 1 reviewer
Permissions and data
Required permissions:
- Access browser tabs
- Access your data for all websites
Data collection:
- The developer says this extension doesn't require data collection.
More information
- Add-on Links
- Version
- 0.2.1
- Size
- 47.39 KB
- Last updated
- 16 days ago (Feb 9, 2026)
- Related Categories
- License
- MIT License
- Version History
- Add to collection
documentation and security policy available on GitHub:
https://github.com/SolidLeoz/ff-android-interceptor