Real-time Analytics
Metrics and performance data for Orion Open Redirect Hunter
Timeframe:
Advanced Analytics
Monthly Growth
Percentage change in user base over the last 30 days compared to previous period
Category Ranking
Current position ranking within the extension category compared to competitors
Install Velocity
Average number of new installations per week based on recent growth trends
Performance Score
Composite score based on rating, review engagement, and user adoption metrics
Version Analytics
Update frequency pattern and time since last version release
Performance Trends
Analytics data over time for Orion Open Redirect Hunter
Loading analytics data...
About This Extension
Automated, safe scanner for Open Redirect vulnerabilities. Does not follow redirects; records Location/meta/JS evidence.
Orion Open Redirect Hunter automates manual tests for Open Redirect (Unvalidated Redirects/Forwards) in web apps.
It injects benign, controlled payloads pointing to example.com and never follows redirects. Instead, it observes:
HTTP 3xx Location headers
HTML meta refresh tags
JavaScript redirects (location.href, location.assign, location.replace)
If a redirect to the canary destination is detected, the tool flags the URL as vulnerable and records clear evidence.
Why it’s safe
No redirect following: requests are issued with redirect handling disabled
Benign payloads only (https://example.com, //example.com, and encoded variants)
Timeouts & optional rate limiting to avoid stressing targets
No third-party services: everything runs locally in your browser
Key features
Test one or many URLs (paste multiple; one per line)
Auto-detect common redirect parameters (next, redirect_uri, returnTo, etc.) or specify your own
Choose GET or HEAD, set timeout and delay between requests
View results inline and Export JSON with full evidence (status, header, mechanism)
Clear legal/ethical banner; intended for authorized testing only
Typical use cases
Security reviews of login flows, OAuth/OIDC callbacks, and post-login redirect chains
AppSec CI/spot checks during release hardening
Bug bounty triage and validation
How it works (high level)
You paste URLs to scan
The tool sets candidate redirect parameters to benign URLs (and encoded variants)
It sends requests with redirect=manual and inspects response headers and HTML
Findings are displayed and can be exported as JSON
Notes
Only test systems you own or have permission to assess
You may need to whitelist targets in your testing scope and follow responsible disclosure practices
open redirect, unvalidated redirect, redirect_uri, OAuth, OIDC, AppSec, bug bounty, security testing, Location header, meta refresh, JavaScript redirect, penetration testing (authorized)
Screenshots
1 of 3
Technical Information
- Size
- 218KiB
- Languages
- 1 supported
- Extension ID
- nhidgdjfenjg...
Links & Resources
Version History
1.0.0
Current Version
Latest
08/13/2025
1.0.-1
Previous Version
07/14/2025
1.0.-2
Older Version
06/14/2025
Related Extensions
Similar extensions in Developer Tools
GoFullPage - Full Page Screen Capture
by Full Page LLC
Developer Tools
Capture a screenshot of your current page in entirety and reliably—without requesting any extra permissions!
10.0M
4.9
82.5K
Mar 23
View Analytics
TouchEn PC보안 확장
by 라온시큐어
Developer Tools
브라우저에서 라온시큐어의 PC보안 기능을 사용하기 위한 확장 프로그램입니다.
9.0M
1.3
6.2K
May 23
View Analytics
React Developer Tools
by Meta
Developer Tools
Adds React debugging tools to the Chrome Developer Tools.
Created from revision 3cde211b0c on 10/20/2025.
5.0M
4.0
1.6K
Oct 21
View Analytics