UnXSS Chrome 插件, crx 扩展下载

 收录于3年前 阅读数 50

扩展ID: cbjmpjkhiafmdnjnigdbelcnbihgpmge

Intercept and modify or delete websites' security headersModify or delete websites' security headers on the fly.

• If you want to load a website in an iframe, and that website uses "X-Frame-Options: SAMEORIGIN", Chrome will refuse to show the website. Use the "Delete X-Frame-Options header" option to have Chrome ignore that restriction.

• If you want to call a foreign AJAX endpoint from a website that has "Content-Security-Policy: ..." set to disallow wildcard script-src, use the "Delete Content-Security-Policy header" to allow running any script on that page.

• If you want to call out to an API endpoint that doesn't specify itself as CORS-friendly, enable the "Add Access-Control-Allow-Origin: * header" and "Add Access-Control-Allow-Methods: * header" options.

Each restriction can be disabled or enabled individually, and a list of checkboxes on the configuration page clearly indicates which restrictions are disabled.

Source code: https://github.com/chbrown/chrome-unxss
名称 UnXSS
插件标识 cbjmpjkhiafmdnjnigdbelcnbihgpmge
平台 Chrome
评分 0
评分人数 7
插件主页

作者 audiere
版本号 0.0.4
大小 234 KB
官网下载次数 545
分类 查看更多 无障碍辅助 分类下的扩展插件
下载地址
更新时间 2015-01-10 00:00:00
举报
回复

相关推荐

大家在找这些插件

相关搜索词