Link to the tool: https://... (minimum 1 required):
[link]https://iamshafayat.github.io/JSpider/[/link]
[link]https://github.com/iamshafayat/JSpider[/link]
List of tags separated by comma: tag1,tag2,tag3... (required):
[tags]web-recon, endpoint-discovery, javascript-crawler, bug-bounty, pentest, frontend-tool, js-crawler[/tags]
Short description of the tool (required, maximum 100 characters):
[short_descr]Browser-based crawler that extracts hidden endpoints and URLs from HTML & JavaScript for recon.[/short_descr]
A bigger description (optional, but nice to have):
[long_descr]JSpider is a client-side reconnaissance utility designed to extract endpoints, API URLs, and valuable references from the HTML source and linked JavaScript files of a target domain. It runs entirely in the browser (no backend required), leveraging smart parsing and filtering logic to produce consolidated endpoint lists useful for:
- Bug bounty reconnaissance
- Web security assessments
- Hidden API discovery
- JS and HTML source crawling
- Pentesting workflow integrations
JSpider not only finds visible links like <a href> and <link href>, but also scans inline and external JavaScript for patterns indicating dynamic or hidden endpoints. It features live search, filtering to remove noise, export to TXT/JSON, and one-click endpoint copying. Unlike simple scanners, it focuses on intelligent pattern extraction and filtering to deliver recon results immediately in the browser interface, adding real value to manual reconnaissance workflows.[/long_descr]
A link or an attached image (minimum 1 required):
[image]https://raw.githubusercontent.com/iamshafayat/JSpider/refs/heads/main/JSpider-screenshot.png[/image]
Link to the tool: https://... (minimum 1 required):
[link]https://iamshafayat.github.io/JSpider/[/link]
[link]https://github.com/iamshafayat/JSpider[/link]
List of tags separated by comma: tag1,tag2,tag3... (required):
[tags]web-recon, endpoint-discovery, javascript-crawler, bug-bounty, pentest, frontend-tool, js-crawler[/tags]
Short description of the tool (required, maximum 100 characters):
[short_descr]Browser-based crawler that extracts hidden endpoints and URLs from HTML & JavaScript for recon.[/short_descr]
A bigger description (optional, but nice to have):
[long_descr]JSpider is a client-side reconnaissance utility designed to extract endpoints, API URLs, and valuable references from the HTML source and linked JavaScript files of a target domain. It runs entirely in the browser (no backend required), leveraging smart parsing and filtering logic to produce consolidated endpoint lists useful for:
JSpider not only finds visible links like
<a href>and<link href>, but also scans inline and external JavaScript for patterns indicating dynamic or hidden endpoints. It features live search, filtering to remove noise, export to TXT/JSON, and one-click endpoint copying. Unlike simple scanners, it focuses on intelligent pattern extraction and filtering to deliver recon results immediately in the browser interface, adding real value to manual reconnaissance workflows.[/long_descr]A link or an attached image (minimum 1 required):
[image]https://raw.githubusercontent.com/iamshafayat/JSpider/refs/heads/main/JSpider-screenshot.png[/image]