SAML-tracer

A debugger for viewing SAML messages

SAML-tracer is a powerful Chrome extension designed for developers and IT professionals to debug and analyze SAML and WS-Federation messages sent through the browser. It captures single sign-on (SSO) and single logout (SLO) messages transparently during authentication workflows, providing insightful visibility into the authentication exchanges. This tool simplifies troubleshooting and enhances understanding of federated identity processes by clearly displaying the raw XML messages exchanged in real time, making it an essential utility for handling SAML-based authentication flows.

By:
SimpleSAMLphp
Users:
400,000+
Rating:
4.42
(31)
Version:
1.8.0 Last updated: 2024-08-18
Creation date:
2019-11-18
Risk:
Moderate risk impact Moderate risk likelihood
Permissions:
  • webRequest
Host permissions:
  • <all_urls>
Size:
102.30K
Email:
sa*****@googlegroups.com
URLs:
Privacy policy
Full description:
See detailed description ⏷
Source:
Chrome Web Store
Updated:
a day ago

Ranking

Other platforms

SAML-tracer (v1.8)
22,732+ 4.23 (52)

User reviews

SAML-tracer is highly praised as an essential, easy-to-use tool for debugging SAML and SSO authentication, offering smooth decoding of complex payloads and reliable tracking of HTTP requests. It is especially valued by developers for diagnosing SAML problems. However, users frequently note problems with the export function and occasional UI issues like missing SAML buttons. A commonly requested feature is a raw XML view to preserve spacing when viewing decoded messages.
Pros
  • Extremely helpful for debugging and troubleshooting SAML authentication and SSO issues.
  • Easy to use and reliable for tracking HTTP requests and SAML messages.
  • Supports decoding complex encoded SAML payloads seamlessly, saving time and hassle.
  • Widely considered a must-have tool for developers working with SAML configurations.
  • Functions well across different browsers and handles some WS-FED authentication cases where other tools fail.
Cons
  • Issues with the export functionality, including inability to import exported files and exporting files that contain only 'null'.
  • SAML button interface not always visible; sometimes only HTTP is shown.
  • Lack of a 'raw decoded XML' view leading to whitespace differences in pretty-printed SAML messages.
Recent reviews
Super helpful, must have if you have to debug SAML authentication
by Giulia Di Rienzo, 2024-12-02

SAML button is not showing now only HTTP is visible.
by Harsh Garg, 2024-02-20

Working on Windows / Chrome Version 119.0.6045.124 (Official Build) (64-bit)
by Martin, 2023-11-22
View all user reviews ›

Extension safety

Risk impact

SAML-tracer requires a few sensitive permissions. Exercise caution before installing.

Risk impact analysis details
  • Critical Allows access to all websites, posing a significant security risk as it can monitor and modify data from any visited site.
  • High ****** *** ********* ** ******* *** ******* ******* ** ****** *** *** ******** ******
Risk likelihood

SAML-tracer is probably trust-worthy. Prefer other publishers if available. Exercise caution when installing this extension.

Risk likelihood analysis details
  • Medium This extension has medium user count. Unpopular extensions may not be stable or safe.
  • Low **** ********* *** ******* **** **** * ****** **** ***** ******** *** **** ****** ** ** ****** *** *****
  • Low **** ********* *** ***** **** **** * ****** **** ***** ********** *** **** ****** ** ** ****** *** *****
  • Good **** ********* *** **** **** *******
Upgrade to see full risk analysis details

Compare extensions

Similar extensions

Here are some Chrome extensions that are similar to SAML-tracer:

Popular extensions / apps

Here are some popular extensions / apps that you might be interested in: