Orion Open Redirect Hunter
Automated, safe scanner for Open Redirect vulnerabilities. Does not follow redirects; records Location/meta/JS evidence.
As of May 2026, Orion Open Redirect Hunter has 19 users in the Developer Tools category.
Usersup 26.7 percent+26.7%
19
19
Ratingno change0%
—
— reviews
Reviewsno change0%
—
Version
1.0.0
Manifest V3
History
4 snapshotsTracking since Apr 1, 2026.
View as table
| Date | Users | Rating | Reviews | Version |
|---|---|---|---|---|
| Apr 1, 2026 | 15 | — | — | 1.0.0 |
| Apr 20, 2026 | 16 | — | — | 1.0.0 |
| May 5, 2026 | 15 | — | — | 1.0.0 |
| May 30, 2026 | 22 | — | — | 1.0.0 |
| Now | 19 | — | — | 1.0.0 |
Permissions & access
- Permissions
- storagewebRequest
- Host access
- <all_urls>
Screenshots
About
Orion Open Redirect Hunter automates manual tests for Open Redirect (Unvalidated Redirects/Forwards) in web apps. It injects benign, controlled payloads pointing to example.com and never follows redirects. Instead, it observes: HTTP 3xx Location headers HTML meta refresh tags JavaScript redirects (location.href, location.assign, location.replace) If a redirect to the canary destination is detected, the tool flags the URL as vulnerable and records clear evidence. Why it’s safe No redirect following: requests are issued with redirect handling disabled Benign payloads only (https://example.com, //example.com, and encoded variants) Timeouts & optional rate limiting to avoid stressing targets No third-party services: everything runs locally in your browser Key features Test one or many URLs (paste multiple; one per line) Auto-detect common redirect parameters (next, redirect_uri, returnTo, etc.) or specify your own Choose GET or HEAD, set timeout and delay between requests View results inline and Export JSON with full evidence (status, header, mechanism) Clear legal/ethical banner; intended for authorized testing only Typical use cases Security reviews of login flows, OAuth/OIDC callbacks, and post-login redirect chains AppSec CI/spot checks during release hardening Bug bounty triage and validation How it works (high level) You paste URLs to scan The tool sets candidate redirect parameters to benign URLs (and encoded variants) It sends requests with redirect=manual and inspects response headers and HTML Findings are displayed and can be exported as JSON Notes Only test systems you own or have permission to assess You may need to whitelist targets in your testing scope and follow responsible disclosure practices open redirect, unvalidated redirect, redirect_uri, OAuth, OIDC, AppSec, bug bounty, security testing, Location header, meta refresh, JavaScript redirect, penetration testing (authorized)
Technical
- Version
- 1.0.0
- Manifest
- V3
- Size
- 218KiB
- Min Chrome
- 88
- Languages
- 1
- Featured
- No
Metadata
- ID
- nhidgdjfenjgfkebimhdanbfipgfacpl
- Developer ID
- uf36c2120deeb9fabce3b7781118d64e4
- Developer Email
- [email protected]
- Created
- Aug 13, 2025
- Last Updated (Store)
- Aug 13, 2025
- Last Scraped
- May 30, 2026
- Website
- —
- Support URL
- —
- Privacy Policy
- https://reactnativeinsights.com/privacy/
Similar extensions
Alternatives to Orion Open Redirect Hunter, ranked by description similarity.
Redirect Inspector
Inspect and visualize redirect chains directly in your browser.
75
★ 5.0
URL Redirector
Redirect URLs including JS, CSS, AJAX calls, and iframes based on custom rules
10
Redirect Checker
URL redirect checker that lets you check website redirection, follow a full link redirect trace, and view every HTTP status code
319
★ 5.0
LPR - Ultimate Recon & Bug Hunting Tool
Stop manually searching source code. Start hunting.
LPR (Live Params & Redirects) is an all-in-one reconnaissance and…
168
★ 5.0
Redirectly
Manage and apply personalized URL redirect rules in real time. Fully unlimited and free with no restrictions.
172
★ 5.0
URL Redirector
Redirect URLs to another domain while keeping the path
22
★ 5.0
Redirector
Redirector is a browser extension that helps you redirect URLs based on rules.
300
★ 4.5
Requestick
Intercepts and modifies HTTP requests
—
Data sourced from the Chrome Web Store · last verified May 30, 2026.