data:image/s3,"s3://crabby-images/4d49e/4d49e70b285280456777b73021b372a0572b4572" alt="KB SSL Enforcer"
KB SSL Enforcer
10,000+ users
Version: 2.0.5
Updated: November 20, 2020
data:image/s3,"s3://crabby-images/129c7/129c79c75ae0ab220c6dff422c6753bee470ce06" alt=""
Available in the
Chrome Web Store
Chrome Web Store
Install & Try Now!
data:image/s3,"s3://crabby-images/26554/265549d164625f538f4c5b86c0ce05bf51254721" alt=""
Red Dragon Hardcore Radical Black & Blue Extra Thick Standard Dart Flights - 4 Sets per Pack (12 Dart Flights in Total)
data:image/s3,"s3://crabby-images/f2c47/f2c4730c176761ae7092bf977688aba19f4070c1" alt=""
Israel Luxurious" Gold Torah Anointing Oil Scented Light Of Jerusalem
data:image/s3,"s3://crabby-images/66e7c/66e7c19ad4225168823677d1ffc00a880ff739f3" alt=""
Wordle Challenge for Kids: 100 Puzzles to Do Anywhere, Anytime [Book]
data:image/s3,"s3://crabby-images/73a77/73a77ba7c43a33154d65cc03c637c6b8bb0237fd" alt=""
Yes I'm A Trump Get Over It Trump 2024 Election Gifts 16 in Basic Backpack
data:image/s3,"s3://crabby-images/ff144/ff144ada2d29c004f3ad80652630f6b0e5ea0f00" alt=""
Trump Will Be Legend Trump 2024 Legendary Vector Backpack
data:image/s3,"s3://crabby-images/0ec01/0ec0166ba650a285fe7d415494375f78d79addcd" alt=""
Dipshit Nonsense Inspired Heart Sabrina Carpenter Pin
This extension enforces encryption for websites that support it as much as currently possible in Chrome. This gives you added security and privacy for your browsing automatically and transparently. This is particularly important on insecure networks, such as public wifi in e.g. coffee shops and hotels.
It is not completely secure against the infamous Firesheep, but it does minimize the risk greatly. See the section on complete enforcement for technical details and more on when this will be possible.
Features:
- Automatically detects if a site supports SSL (TLS) and enforces all subsequent requests to be over SSL
- As soon as a domain is set to be enforce, the browser will not send any unencrypted requests for that domain (unless the site deliberately enforces not using encryption, see the section on complete enforcement)
- Flexible options for overriding the auto-detection
- Caches which sites support SSL (respects incognito mode)
- Open source (GPLv2 or later)
Changelog:
https://github.com/kbitdk/kbss lenforcer/blob/master/Changelo g.md
Issue tracker:
https://github.com/kbitdk/kbss lenforcer/issues
Complete enforcement:
Due to Chrome limitations KB SSL Enforcer detects SSL on the very first visit to a page and is unable to block the unencrypted request from going through while this is happening. It will let that page load and if it is detected to support SSL, all subsequent requests to that domain will be enforced automatically to use SSL before the unencrypted request is sent from the browser.
The unencrypted request only goes through on the very first page visit where it's detecting SSL support. The setting will be saved and survives reboots and all. The only way to stop enforcing SSL is to manually set it to ignore SSL on that domain or if the extension detects that the site is trying to enforce an unencrypted connection and therefore backs off by not enforcing it from then on.
This first insecure request could send a cookie in the clear, which would give anyone with tools like Firesheep an opportunity to use your account on that site. But this only happens if they catch it during that first request and if it includes sensitive information, such as your logged in session. All subsequent requests, even after restarting the browser and rebooting the computer, will enforce encryption.
Permissions:
The manifest file states the permissions requested:
https://github.com/kbitdk/kbss lenforcer/blob/master/chrome%2 0extension/manifest.json
* *://*/
* This is for accessing pages on all domains and both with and without SSL
* tabs
* This is for accessing information on whether a tab is in incognito, so it can be respected
* webRequest
* This is for intercepting the unencrypted requests and detecting whether the site doesn't support encryption by redirecting encrypted requests to the unencrypted site
* webRequestBlocking
* This is for blocking the unencrypted requests while determining whether it needs to be redirected
The project is open source and any scrutiny of the code or the extension's behavior is encouraged. If you have any comments, please open an issue on the issue tracker:
https://github.com/kbitdk/kbss lenforcer/issues
Feedback:
Any questions or feedback are welcome in the issue tracker linked above, which has features to manage and notify people of any issues, so they can be fixed and we can all have a better extension. Please keep the user reviews section of this page to just reviews. Thanks.
Developed by KB IT:
https://kbit.dk
It is not completely secure against the infamous Firesheep, but it does minimize the risk greatly. See the section on complete enforcement for technical details and more on when this will be possible.
Features:
- Automatically detects if a site supports SSL (TLS) and enforces all subsequent requests to be over SSL
- As soon as a domain is set to be enforce, the browser will not send any unencrypted requests for that domain (unless the site deliberately enforces not using encryption, see the section on complete enforcement)
- Flexible options for overriding the auto-detection
- Caches which sites support SSL (respects incognito mode)
- Open source (GPLv2 or later)
Changelog:
https://github.com/kbitdk/kbss lenforcer/blob/master/Changelo g.md
Issue tracker:
https://github.com/kbitdk/kbss lenforcer/issues
Complete enforcement:
Due to Chrome limitations KB SSL Enforcer detects SSL on the very first visit to a page and is unable to block the unencrypted request from going through while this is happening. It will let that page load and if it is detected to support SSL, all subsequent requests to that domain will be enforced automatically to use SSL before the unencrypted request is sent from the browser.
The unencrypted request only goes through on the very first page visit where it's detecting SSL support. The setting will be saved and survives reboots and all. The only way to stop enforcing SSL is to manually set it to ignore SSL on that domain or if the extension detects that the site is trying to enforce an unencrypted connection and therefore backs off by not enforcing it from then on.
This first insecure request could send a cookie in the clear, which would give anyone with tools like Firesheep an opportunity to use your account on that site. But this only happens if they catch it during that first request and if it includes sensitive information, such as your logged in session. All subsequent requests, even after restarting the browser and rebooting the computer, will enforce encryption.
Permissions:
The manifest file states the permissions requested:
https://github.com/kbitdk/kbss lenforcer/blob/master/chrome%2 0extension/manifest.json
* *://*/
* This is for accessing pages on all domains and both with and without SSL
* tabs
* This is for accessing information on whether a tab is in incognito, so it can be respected
* webRequest
* This is for intercepting the unencrypted requests and detecting whether the site doesn't support encryption by redirecting encrypted requests to the unencrypted site
* webRequestBlocking
* This is for blocking the unencrypted requests while determining whether it needs to be redirected
The project is open source and any scrutiny of the code or the extension's behavior is encouraged. If you have any comments, please open an issue on the issue tracker:
https://github.com/kbitdk/kbss lenforcer/issues
Feedback:
Any questions or feedback are welcome in the issue tracker linked above, which has features to manage and notify people of any issues, so they can be fixed and we can all have a better extension. Please keep the user reviews section of this page to just reviews. Thanks.
Developed by KB IT:
https://kbit.dk
Related
data:image/s3,"s3://crabby-images/ebad6/ebad6fb35e3edaf1a911465b07c7b8e0a0748250" alt="Certificate Info"
Certificate Info
3,000+
data:image/s3,"s3://crabby-images/2609e/2609ef1ee566dee4f1615ade2fe1820c8a8aa386" alt="SKN SSL Enforcer"
SKN SSL Enforcer
866
data:image/s3,"s3://crabby-images/a9183/a91839b598b6d5ea56eef90b2737e1e0a3556163" alt="Disconnect"
Disconnect
400,000+
data:image/s3,"s3://crabby-images/ec483/ec483a168bf6e06d5718c7c3b90b77dbc37d1844" alt="SSL Grade"
SSL Grade
1,000+
data:image/s3,"s3://crabby-images/382a6/382a68877c4e3a28c62826666768cf41d67a6dd9" alt="Force HTTPS (SSL/TLS)"
Force HTTPS (SSL/TLS)
3,000+
data:image/s3,"s3://crabby-images/2875f/2875f75d1e9065e6c6572492009a08f92007185a" alt="ScriptSafe"
ScriptSafe
100,000+
data:image/s3,"s3://crabby-images/df949/df949e5776c7e8cda4300eca2725b185baae89d5" alt="Smart HTTPS"
Smart HTTPS
20,000+
data:image/s3,"s3://crabby-images/a3fda/a3fda788415751830a59169d58b8b2596b21ec57" alt="SSL to TLS"
SSL to TLS
845
data:image/s3,"s3://crabby-images/55ace/55acedc39c537fbe7f33998eb4bc6197fc4184f9" alt="Privacy Guardr"
Privacy Guardr
728
data:image/s3,"s3://crabby-images/c51a2/c51a2180a421278feae3b95fd9c04c207be366c3" alt="Privacy Manager"
Privacy Manager
10,000+
data:image/s3,"s3://crabby-images/36d9d/36d9dcb79f0b63f90ee091a898cdd09ed4a09d5c" alt="HTTPS Finder"
HTTPS Finder
1,000+
data:image/s3,"s3://crabby-images/39033/39033d2fd01f51ffb22ae311d30c1e16debacb8c" alt="SSL Checker"
SSL Checker
6,000+
data:image/s3,"s3://crabby-images/2dded/2dded6c65c59520f70de208b9c4a3efaaf520c61" alt="IronVest Extension"
IronVest Extension
80,000+
data:image/s3,"s3://crabby-images/28bc0/28bc09ff4d66473533a29a823bc40d42ba820038" alt="uMatrix"
uMatrix
80,000+
data:image/s3,"s3://crabby-images/4596d/4596d4db29c8765c0d2c95a93a5f67cad3e1b2e9" alt="SSL/TLS安全评估报告"
SSL/TLS安全评估报告
4,000+
data:image/s3,"s3://crabby-images/9f2f5/9f2f5f5e665e0e4c40e8ff77f2a625798b58d379" alt="TLSA Validator"
TLSA Validator
1,000+
data:image/s3,"s3://crabby-images/72b88/72b882e344c2aa54c2c2fd065b0902120fa6dc28" alt="Decentraleyes"
Decentraleyes
100,000+
data:image/s3,"s3://crabby-images/f6bd5/f6bd5025612a84f4a206e72dd920dd61260cea41" alt="ScriptBlock"
ScriptBlock
30,000+
data:image/s3,"s3://crabby-images/29b23/29b239f87b106f9564dac946eade872c7190ccc6" alt="uBO-Scope"
uBO-Scope
2,000+
data:image/s3,"s3://crabby-images/2ff55/2ff559918d0e1f618a734e7da0e3b83950393be7" alt="Privacy Cleaner"
Privacy Cleaner
10,000+
data:image/s3,"s3://crabby-images/3be0d/3be0d04aaf286ea83cdee7c86e3d03871f9d434d" alt="Proxxy"
Proxxy
4,000+
data:image/s3,"s3://crabby-images/e58e5/e58e587c6e65d1bd9814df96a4da05dde8bce20e" alt="UPPERSAFE"
UPPERSAFE
583
data:image/s3,"s3://crabby-images/27c18/27c18acec942ab28fffd6f0b1f21db6c67bf1c47" alt="Zalmos Web Proxy"
Zalmos Web Proxy
1,000+
data:image/s3,"s3://crabby-images/e3c3d/e3c3d4ddfde0f2fcd28109842f0b87ef6a33906f" alt="Quick & Dirty Proxy Flipper"
Quick & Dirty Proxy Flipper
1,000+