XApi HTTP Client - API Tool, Modify Header & Response

XApi HTTP Client - API Tool, Modify Header & Response

ID: ilcnglohbiokfdcokfceihebobkpeaij

Supported Languages

🇨🇳Chinese (Simplified)
🇺🇸English

Extension Info & Metadata

Status
Active
Version
3.1.8
Size
0.13 MB
Rating
0.0/5
Reviews
0
Users
768
Type
Extension
Updated
Jul 19, 2026
Category
Developer tools
Price
Free
Featured
Yes
Visibility
Listed
Mature
No
By Google
No
Trusted
No

Publisher Contextual Analysis

Author
Senee LuView Profile
MX records exist
Yes
Domain exists
Yes
Is disposable
No
Is role-based
No
Mailbox exists
Yes
Total Extensions
2
Active
2
Obsolete
0
Listed
2
Unlisted
0
Total Users
832
Screenshot 1
Screenshot 2
Screenshot 3
Screenshot 4
Screenshot 5

Intercept, debug, modify header & response, replay HTTP requests. Comprehensive API client & cURL support in Chrome DevTools.

Stop switching context between your browser and external API clients like Postman or Insomnia. HTTP CaptureExt Client brings a full-featured API testing environment directly into your Chrome DevTools panel. Built with the latest Manifest V3 technology, this extension allows you to intercept, inspect, edit, and replay HTTP requests without ever leaving your current tab. It is lightweight, secure, and designed specifically for frontend developers and QA engineers. 🚀 KEY FEATURES 1. Seamless DevTools Integration Access the "HTTP Tool" tab directly in your F12 Developer Tools. Debug APIs in the exact context of your web application. 2. Intercept & Record Traffic Automatically capture live Fetch and XHR requests occurring on the page. View status codes, timing, size, and methods (GET, POST, PUT, DELETE, PATCH, etc.) in real-time. 3. Edit & Replay Requests Found a bug? Don't just watch it happen—fix it. Click any captured request to open it in the editor. Modify: Query Parameters: Add, remove, or disable params. Headers: Tweak authorization tokens or content types. Request Body: Full support for JSON, Raw Text, x-www-form-urlencoded, and Multipart Form-Data (including file uploads). 4. Advanced Workspace & Collections Collections: Organize your requests into folders to keep your workspace clean. Tabs System: Work on multiple requests simultaneously with a familiar tabbed interface. History: Access your recently captured requests instantly. 5. cURL Import Have a cURL command from your backend team or server logs? simply paste it into the importer, and we'll convert it into an editable request instantly. 6. Developer-First Experience Syntax Highlighting: Beautiful JSON formatting for request/response bodies. Clean UI: Modern, distraction-free interface built with React & Tailwind. Local Storage: Your collections and history are saved locally in your browser. 🔒 PRIVACY & SECURITY Offline First: We do not track your usage or collect your API data. Local Execution: All requests originate from your browser, ensuring access to local/intranet APIs (localhost) works perfectly. Open Source: Transparent code for peace of mind. Why install HTTP CaptureExt Client? If you are tired of copying authentication tokens from the browser to an external tool, or if you need to quickly test how your backend handles different payloads without writing code, this is the tool for you. Update Log (v1.0.0): Initial release with Manifest V3 support. Added Collections and Drag & Drop support. Added Response visualizer with JSON formatting.

Item
Type
Severity
Description
webRequest
Permission
Critical
This permission enables the extension to monitor and analyze all web requests made by the browser. Rated Critical because it can observe all network traffic including sensitive data, track browsing behavior, and gather authentication tokens.
declarativeNetRequest
Permission
Critical
This permission allows the extension to define rules to block, redirect, or modify network requests. Rated Critical because it can control all network traffic, potentially blocking security updates or redirecting to malicious sites.
scripting
Permission
Critical
This permission allows injection and execution of JavaScript on any webpage. Rated Critical because it can modify page content, steal sensitive data, and inject malicious code into any site the extension has access to.
<all_urls>
Host
Critical
Broad host access — the extension can read/modify content on every website.
Contextual Risk Factors
Risk Factor
High
The following context increases the overall risk:• 10% increase: Early script execution enables pre-emptive content manipulation• 25% increase: Unsafe code evaluation capabilities increase attack surface
Broad Host Permissions
Risk Factor
High
This extension has broad host permissions allowing it to access many or all websites.
Broad Content Script Access
Risk Factor
High
This extension can inject scripts into any website.
Unsafe WebAssembly Execution
Risk Factor
High
This extension's CSP allows "wasm-unsafe-eval".
storage
Permission
Medium
This permission allows storing data locally in the browser. Rated Medium because it can persist sensitive user data, track user activities over time, and potentially store malicious payloads.
declarativeNetRequestFeedback
Permission
Medium
This permission provides network request modification logs. Rated Medium because it can monitor network request changes and debug traffic modifications.
Early Content Script Execution
Risk Factor
Medium
This extension runs content scripts at document_start.
contextMenus
Permission
Low
This permission adds items to browser context menus. Rated Medium because it only modifies right-click menus without access to page content.
URLs
10
IPv4
0
IPv6
0

URLs

View the external URLs this extension communicates with to understand its network activity and data interactions.

Gain full insight into all external connections.

Upgrade for full visibility.

reactjs.org/docs/error-decoder.htmlhttps://reactjs.org/docs/error-decoder.html?invariant=
www.w3.org/1999/xlinkhttp://www.w3.org/1999/xlink
www.w3.org/XML/1998/namespacehttp://www.w3.org/XML/1998/namespace
www.w3.org/2000/svghttp://www.w3.org/2000/svg
www.w3.org/1998/Math/MathMLhttp://www.w3.org/1998/Math/MathML
www.w3.org/1999/xhtmlhttp://www.w3.org/1999/xhtml
api.example.com/userhttps://api.example.com/user
github.com/lustan/XApihttps://github.com/lustan/XApi
github.com/lustan/XApi/issueshttps://github.com/lustan/XApi/issues
api.example.com-https://api.example.com

Gain full insight into all external connections.

Upgrade for full visibility.

No IP addresses found
Showing 1 to 10 of 20 rows
Rows per page:

Code Diff

Compare extension code between any two versions.

0 changed files (scanned top 25 shared text files)

No comparable text files found between these versions.

Browse and explore files within this extension package

Gain full insight into all external connections.

Upgrade for full visibility.