ReAPI Extension

ReAPI Extension

ID: afgjkfoekcdikiaiglomnpcihlpnnbnn

Supported Languages

🇺🇸US English

Extension Info & Metadata

Status
Active
Version
0.0.24
Size
0.37 MB
Rating
0.0/5
Reviews
0
Users
29
Type
Extension
Updated
Apr 1, 2025
Category
Developer tools
Price
Free
Featured
No
Visibility
Listed
Mature
No
By Google
No
Trusted
Yes

Publisher Contextual Analysis

Trusted
Author
peisongoView Profile
MX records exist
Yes
Domain exists
Yes
Is disposable
No
Is role-based
No
Mailbox exists
Yes
Total Extensions
2
Active
1
Obsolete
1
Listed
2
Unlisted
0
Total Users
267
Screenshot 1
Screenshot 2

Bypass CORS when using ReAPI.com explorer.

This is a ReAPI.com extension used to by pass Chrome CORS when debugging Rest APIs in ReAPI explorer.

Item
Type
Severity
Description
declarativeNetRequest
Permission
Critical
This permission allows the extension to define rules to block, redirect, or modify network requests. Rated Critical because it can control all network traffic, potentially blocking security updates or redirecting to malicious sites.
<all_urls>
Host
Critical
Broad host access — the extension can read/modify content on every website.
cookies
Permission
High
This permission provides full access to read and modify browser cookies. Rated High because it can steal session tokens, modify authentication cookies, and compromise accounts across websites.
Broad Host Permissions
Risk Factor
High
This extension has broad host permissions allowing it to access many or all websites.

By severity

Critical0
High1
Medium1
Low0

Versions scanned

Showing 1 of 22 scanned versions with more than one unique finding. Counts are unique findings that include each version.

Extension VersionCode Review Findings
0.0.32

Files with findings

2 distinct paths — top paths by unique finding count:

  • manifest.json1
  • rules_1.json1
S.No.
Category
Severity
File
Summary
Found in Version
1Other
high
manifest.json (line 33)The bundled manifest declares webRequest, declarativeNetRequestFeedback, storage, and tabs — none of which appear in the CWS-published manifest (which lists only cookies and declarativeNetRequest). webRequest in parti…
2Other
medium
rules_1.json (line 1)A static rule file exists that would inject a non-standard synthetic header A6666: 69699696 into every XHR/WebTransport response with no domain condition. While the manifest's rule_resources array is empty so this fil…
URLs
25
IPv4
0
IPv6
0

URLs

View the external URLs this extension communicates with to understand its network activity and data interactions.

Gain full insight into all external connections.

Upgrade for full visibility.

clients2.google.com/service/update2/crxhttps://clients2.google.com/service/update2/crx
*.reapi.com/*https://*.reapi.com/*
*.reapi.io/*https://*.reapi.io/*
*.reapi.com/*http://*.reapi.com/*
*.reapi.io/*http://*.reapi.io/*
local.reapi.io/*http://local.reapi.io:3000/*
www.w3.org/2000/svghttp://www.w3.org/2000/svg
${e}`-http://${e}`
github.com/faker-js/faker%60https://github.com/faker-js/faker`
fakerjs.dev/guide/localization.html%60https://fakerjs.dev/guide/localization.html`
Showing 1 to 10 of 30 rows
Rows per page:

Gain full insight into all external connections.

Upgrade for full visibility.

No IP addresses found
Showing 1 to 10 of 30 rows
Rows per page:

Code Diff

Compare extension code between any two versions.

0 changed files (scanned top 25 shared text files)

No comparable text files found between these versions.

Browse and explore files within this extension package

Gain full insight into all external connections.

Upgrade for full visibility.