Додаци за прегледач Firefox
  • Проширења
  • Теме
    • за Firefox
    • Речници и језички пакети
    • Странице других прегледача
    • Додаци за Android
Пријавите се
Преглед Recon Cockpit

Recon Cockpit од Ali Essam

On-demand recon cockpit for authorized web security research. Scans the current site: passive discovery, a same-origin crawl, parameter extraction with reflection testing, and evidence-backed checks for exposed configs, secrets, and VCS metadata.

0 (0 рецензија)0 (0 рецензија)
Нема корисникаНема корисника
Преузмите Firefox и добијте додатак
Преузмите датотеку

Метаподаци додатка

О овом додатку
Recon Cockpit is a browser-overlay reconnaissance tool for authorized web security testing. It does nothing on install and nothing on page load — you open it by clicking the toolbar icon (or Alt+Shift+U), and scanning itself is a separate, explicit "Start Smart Scan" click inside the panel.

A scan runs in phases:
- Passive discovery — collects URLs, endpoints, and script references already present on the page.
- Same-origin crawl — follows links to other pages on the same origin (bounded by a configurable page limit and depth), so parameters and forms spread across a multi-page app are all found, not just the current page.
- Parameter extraction — pulls query/form parameters into a searchable, filterable list, each with a ready-to-copy test URL.
- Reflection testing — on request, sends a unique marker in place of a parameter's value and reports whether it comes back unescaped, HTML-escaped, or URL-encoded in the response.
- Targeted checks — read-only requests to common exposed paths (config files, VCS metadata like .git, credential files, API schemas, backups) on the page's own origin, with automatic false-positive suppression for SPA/catch-all routes that return 200 for everything.

Findings are scored by severity (High/Medium/Low/Info), exportable as JSON or CSV, and copyable as a report. All requests are same-origin only, capped in concurrency, and nothing is sent anywhere outside your browser — no telemetry, no data collection.

Built for penetration testers, bug bounty hunters, and developers auditing their own sites. Use only on systems you own or have explicit permission to test.
Оцењено са 0 од стране 0 рецензената
Пријавите се да бисте оценили овај додатак
Још увек нема оцена

Оцена звездицама сачувана

5
0
4
0
3
0
2
0
1
0
Још увек нема рецензија
Овлашћења и подаци

Потребна овлашћења:

  • Приступ подацима за све веб странице

Прикупљање података:

  • Програмер наводи да овом додатку није потребно прикупљање података.
Сазнајте више
Више информација
Везе додатка
  • Почетна страница
  • Страница подршке
  • Е-пошта подршке
  • Копирај ИД додатка
Издање
6.9.1
Величина
82,9 KB
Последњи пут ажурирано
pre jednog meseca (19. avg. 2026.)
Повезане категорије
  • Веб програмирање
  • Приватност и безбедност
  • Алатке за претраживање
Дозвола
Сва права су задржана
Политика приватности
Прочитајте политику приватности за овај додатак
Историјат издања
  • Погледајте сва издања
Додај у збирку
Пријави овај додатак
Идите на почетну страницу Mozilla-е

Додаци

  • O програму
  • Блог о додацима за Firefox
  • Радионица за додатке
  • Центар за програмере
  • Политике програмера
  • Блог заједнице
  • Форум
  • Пријавите грешку
  • Водич за оцењивање

Преузмите

  • Download Firefox
  • Windows
  • macOS
  • iOS
  • Android
  • Linux
  • All

Најновије градње

  • Nightly
  • Beta

Firefox за предузећа

  • Enterprise

Заједница

  • Connect
  • Contribute
  • Developer

Прати

  • Instagram
  • YouTube
  • TikTok
  • Bluesky
  • Podcast
  • Приватност
  • Колачићи
  • Права

Изузев тамо где је другачије наведено , садржај на овој страници је лиценциран под Creative Commons Attribution Share-Alike дозволом v3.0 или било којим каснијим издањем.