Static Code Analysis
Deep inspection for obfuscation, risky eval usage, remote fetch paths, and sensitive APIs.
AI-powered security analysis for VS Code, Chrome, Firefox, and IDE extensions.
Built by a security researcher trusted by
HOW IT WORKS
01
Paste any extension ID or marketplace URL in the analyzer widget.
02
ExtLens parses source code, permissions, dependencies, and behavioral signals.
03
Get a report with risk score, findings, and remediation guidance in seconds.
CAPABILITIES
Deep inspection for obfuscation, risky eval usage, remote fetch paths, and sensitive APIs.
Model-assisted threat assessment to catch subtle behavior patterns in extension logic.
See exactly what each extension can read, write, and execute across your environment.
Dependency-level checks with CVE and advisory references for direct and indirect packages.
Agent telemetry tracks installs, updates, and removals across teams and machines.
Block high-risk extensions with approvals and audit trails for controlled exceptions.
ENTERPRISE
Deploy the ExtLens Agent to monitor every extension install, enforce policies, and maintain complete audit trails with zero employee friction.
Real-time monitoring across all machines and platforms
Policy enforcement for risky extension installs
Zero-touch deployment with pre-configured installer packages
Approval workflows for blocked extension access requests
SEE IT IN ACTION
publisher.example
Free for individual use. No credit card required.
No credit card · Free for individuals · API access available