1 item
Passive OWASP scanner with AI explanation layer. Passive OWASP scanner for Chrome with AI-backed, on-demand explanations using your own Anthropic/Gemini/DeepSeek key. Khoj Webscan passively inspects the page you’re viewing and highlights OWASP-aligned security issues without sending payloads or fuzzing inputs. It checks response headers, cookies, DOM resources, inline scripts, and loaded assets to surface missing/weak security controls, mixed content, missing SRI, insecure cookie flags, and other passive risks. Key benefits: Passive browser-only scanning: no active probing, only what the page already exposes OWASP-aligned findings with exact evidence and remediation guidance Per-finding AI explanation on demand, using your own provider key Redaction preview before any provider request is sent Local-only API key storage (chrome.storage.local, never sync) Severity-ranked exported reports for security reviews and audits Privacy / trust note Your API key stays local and provider calls happen directly from your machine. Sensitive values are redacted before being sent, and explanation requests are cached locally for up to 7 days.
Aug 4, 2026
rating_count is the Chrome Web Store ratings count, not a written-review count.
Media assets
Screenshots and videos on the listing.
Has promo video
Whether the listing includes at least one video.
Languages
Declared language locales.
Developer website
Listing exposes a developer website URL.
Contact email
Listing exposes a contact email.
Keyword in name
Case-insensitive substring match in the name.
Keyword in description
Case-insensitive substring match in the description.
Keyword occurrences in description
Count of case-insensitive occurrences in the description.
Category user-count percentile
Share of same-category extensions with fewer users (null if unknown).
These are transparent listing completeness / keyword signals, not a prediction of Chrome Web Store search ranking.