Pentestproai Security Sca Chrome extension icon

Pentestproai Security Sca

👥 24 users
📦 v3.0.0
💾 26.47KiB
📅 2025-12-26
View on Chrome Web Store

Chrome will indicate if you already have this installed.

Overview

PentestProAI – Web Security Headers & Cookie Scanner

🔍 Instantly analyze web security configurations in your browser

PentestProAI is a lightweight Chrome extension that helps developers and security professionals quickly inspect security headers, cookies, CORS settings, cache policies, and server information of any website — directly from the browser.

Perfect for pentesters, developers, bug bounty hunters, and DevSecOps teams who need fast, reliable visibility without running heavy tools.

🛡️ Security Headers Analysis
Checks the presence of critical security headers and clearly shows whether they are configured or missing:

HSTS
Content Security Policy (CSP)
X-Frame-Options
X-Content-Type-Options
Referrer-Policy
Permissions-Policy

Each header is displayed as:
✓ Configured
✗ Missing

🍪 Cookie Security Inspection

Lists all cookies for the current domain and highlights important security flags:
Secure (HTTPS-only cookies)
HttpOnly (not accessible via JavaScript)
SameSite (CSRF protection)
Quickly identify insecure or misconfigured cookies that may expose user data.

🌐 CORS Headers Visibility

Displays raw CORS response headers without interpretation, allowing accurate manual analysis:
access-control-allow-origin
access-control-allow-credentials
access-control-allow-methods
access-control-allow-headers
Ideal for detecting overly permissive or risky CORS configurations.

💾 Cache Control Headers

Shows caching-related headers exactly as returned by the server:
cache-control
pragma
expires
Useful for identifying sensitive data being cached improperly.

ℹ️ Technical Information Disclosure

Reveals common technology disclosure headers, including:
server (e.g. Nginx, Apache)
x-powered-by (e.g. PHP, Express)
x-aspnet-version
Helps identify unnecessary information leakage that can aid attackers.

👨‍💻 Who is this extension for?

Web developers
Pentesters & security analysts
Bug bounty hunters
DevSecOps teams

Anyone performing quick security checks on web applications

✅ Why use PentestProAI?

No setup or configuration required
Fast, browser-based security inspection
Clear visibility into common web security misconfigurations
Ideal for reconnaissance and quick audits

👉 Install now and inspect web security headers in seconds.

Tags

Make Chrome Yours/privacy make chrome yours/privacy

Privacy Practices

Not being sold to third parties, outside of the approved use cases
Not being used or transferred for purposes that are unrelated to the item's core functionality
Not being used or transferred to determine creditworthiness or for lending purposes

🔐 Security Analysis

This extension hasn't been security-scanned yet.

Adguard Adblocker

17M+ users
Unmatched adblock extension against advertising and pop-ups. Blocks ads on Facebook, YouTube and all other websites.
Make Chrome Yours/privacy

Ublock Origin Lite

16M+ users
An efficient content blocker. Blocks ads, trackers, miners, and more immediately upon installation.
Make Chrome Yours/privacy

uBlock Origin

15M+ users
Finally, an efficient blocker. Easy on CPU and memory.
Make Chrome Yours/privacy