# Check XSS

> Plugin helps in finding site vulnerabilities such as XSS, SQL injection and CRLF. Check XSS makes it possible for you to text XSS (CRLF and SQL commands) with context menu with just 2 mouse clicks.

Canonical page: [https://chrome-stats.com/d/check-xss](https://chrome-stats.com/d/check-xss)

## Overview

- **ID:** `check-xss`
- **Platform:** Firefox
- **Type:** Firefox add-on
- **Status:** Available
- **Publisher:** Gray Sky
- **Category:** web-development,privacy-security
- **Daily users:** 295
- **Weekly downloads:** 16
- **Rating:** 5.00 / 5 (3 ratings)
- **Version:** 1.1
- **Last updated:** 2019-10-03
- **First published:** 2019-09-11
- **Size:** 12 KB
- **Data as of:** 2026-09-13
- **Store listing:** [Firefox Add-ons Store](https://addons.mozilla.org/firefox/addon/check-xss/)

## Description

Check XSS is a Chrome extension designed for security professionals to efficiently detect site vulnerabilities like Cross-Site Scripting (XSS), SQL injection, and CRLF issues. By adding a context menu with various payloads, it allows users to copy malicious test strings directly to their clipboard with just two mouse clicks. Users can then paste these payloads into any input field to test for vulnerabilities quickly and effectively.

This tool streamlines security testing workflows, making it easier for security engineers to identify critical issues in web applications without complex setups. With its intuitive interface and focused functionality, Check XSS enhances productivity in the web security testing process.

## Rankings

- #6,927 — Overall
- #86 — inject
- #160 — checker
- #205 — plugin
- #229 — commands
- #239 — command

## Permissions and access

### Permissions

- `menus`
- `activeTab`
- `clipboardRead`
- `clipboardWrite`

## Safety

- **Risk impact:** Low risk impact
- **Risk likelihood:** Low risk likelihood

### Analysis details

- Allows reading and modifying clipboard content, which can be sensitive, posing a moderate privacy risk.
- This extension has low user count. Unpopular extensions may not be stable or safe.

> Some risk analysis details are omitted from this free response. [Upgrade to view the full analysis](https://chrome-stats.com/pricing).

## Similar extensions and apps

- [Easy XSS](https://chrome-stats.com/d/easy-xss) — 357 users, 5.00 / 5
- [XSS Finder](https://chrome-stats.com/d/xss-finder) — 10 users
- [XSSpect](https://chrome-stats.com/d/xsspect) — 52 users
- [XSSassin - Payload Injector](https://chrome-stats.com/d/xssassin-payload-injector) — 35 users
- [XSnare](https://chrome-stats.com/d/xsnare)
- [DOM XSS Highlighter — Pro](https://chrome-stats.com/d/dom-xss-highlighter-pro) — 5 users
- [XSS Finder ext](https://chrome-stats.com/d/xss-finder-ext) — 3 users
- [XSS Detector](https://chrome-stats.com/d/xss-detector) — 2 users
- [XSSRush](https://chrome-stats.com/d/xssrush) — 26 users, 4.00 / 5
- [Baby XSS](https://chrome-stats.com/d/baby-xss) — 10 users
- [xxstension](https://chrome-stats.com/d/xxstension) — 1 users
- [INDIAN XSS](https://chrome-stats.com/d/indian-xss) — 1 users

---

Source: [Chrome-Stats](https://chrome-stats.com/d/check-xss)
