Firefox ブラウザーアドオン
  • 拡張機能
  • テーマ
    • Firefox 向け
    • スペルチェック辞書と言語パック
    • 他のブラウザーサイト
    • Android 向けアドオン
ログイン
tardisec のプレビュー

tardisec 作成者: tardisec.com

Browse your own site with its recommended security headers applied, one domain at a time. See what breaks before you enforce it.

Android™ 版 Firefox でも利用可能Android™ 版 Firefox でも利用可能
0 (0 件のレビュー)0 (0 件のレビュー)
Firefox をダウンロードして拡張機能を入手する
ファイルをダウンロード
Scan the QR code to open this extension in Firefox for Android

拡張機能メタデータ

この拡張機能について
Apply stricter security headers to your own site as you browse it, and read the
violation reports the browser raises. One domain at a time, and only the domains
you switch on.

While a domain is switched on, the toolbar icon carries a badge: i (blue) while
it is only monitoring, ! (red) while it is enforcing a policy that can break the
page.
  • Report-Only (default) applies the report-only twins of the recommended
    headers. Additive monitoring, it cannot break the page.
  • Enforce strict applies the enforcing headers, so you can see exactly how the
    site would break under the real policy. What gets enforced depends on whether
    you are signed in.
  • Violations appear in the page's own DevTools console (opt-in per site) and in a
    log you can download as JSON.


Nothing to sign up for. A built-in strict baseline is applied in Report-Only, and
every violation it raises is logged in your browser.

Enforce strict applies your custom header overrides and nothing else. The built-in
baseline is a monitoring tool: enforcing it is a decision about your site.


Signed in at https://app.tardisec.com, it fetches that domain's recommended
security headers from your account and applies them in both modes. That set names
a reporting endpoint, so the browser delivers violation reports to your account as
well as to the in-browser log.


By default:
  • Does nothing until you switch monitoring on for a domain. Installing it changes
    no page, and there is no default-on list.
  • Does not log to the page console. You can turn that on per site.
  • A domain's settings are discarded once every tab for it is closed. Tick
    "Remember these settings for this domain" and they persist until you switch the
    site off. The report log is held in memory for the browser session, and the
    popup can clear it at any time.

Violation reports are produced by the browser's own Reporting API, not by this
extension. They go to whatever endpoint the headers being applied name: your
account's collector when signed in, and no endpoint at all on the built-in
baseline, where reports never leave the browser. No analytics, no telemetry.
0 人のレビュー担当者が 0 と評価しました
ログインしてこの拡張機能を評価
まだ評価されていません

星の評価を保存しました

5
0
4
0
3
0
2
0
1
0
まだレビューはありません
権限とデータ

必要な権限:

  • ブラウザーのタブへのアクセス
  • app.tardisec.com のユーザーデータへのアクセス

任意の許可設定:

  • app.tardisec.com のユーザーデータへのアクセス

開発者によると、必須のデータ収集は次のとおりです:

  • ウェブサイト使用状況
  • ウェブサイトの内容
詳細情報
詳しい情報
アドオンリンク
  • サポートサイト
  • サポートメールアドレス
  • Copy add-on ID
バージョン
0.0.1
サイズ
70.92 KB
最終更新日
8日前 (2026年8月15日)
関連カテゴリー
  • ウェブ開発
  • プライバシー/セキュリティ
ライセンス
All Rights Reserved
バージョン履歴
  • すべてのバージョンを見る
コレクションへ追加
このアドオンを報告
Mozilla のホームページへ

アドオン

  • このサイトについて
  • Firefox アドオンブログ
  • 拡張機能ワークショップ
  • 開発者センター
  • 開発者ポリシー
  • コミュニティブログ
  • フォーラム
  • バグを報告
  • レビューガイド

Download

  • Download Firefox
  • Windows
  • macOS
  • iOS
  • Android
  • Linux
  • All

Latest Builds

  • Nightly
  • Beta

Firefox for Business

  • Enterprise

Community

  • Connect
  • Contribute
  • Developer

Follow

  • Instagram
  • YouTube
  • TikTok
  • Bluesky
  • Podcast
  • プライバシー
  • Cookie
  • 法的情報

特に 明記されている 場合を除き、当サイト上のコンテンツは Creative Commons 表示・継承ライセンス v3.0 あるいはそれ以降のバージョンでライセンスされています。Android は Google LLC の登録商標です。