Skip to content

XSStrike

Advanced cross-site scripting detection suite with fuzzing and analysis to find XSS vulnerabilities.

Self-hostedNot yet verified
Report issue
GPL-3.0★ 2800Source project only — not browser-runnable

External Tool

This open-source tool is maintained externally. View the source on GitHub to learn more or run it yourself.

Browse security tools →

What's next with XSStrike?

Choose how you want to get started.

Use it free

Open the official tool or demo — no account needed.

Free

Self-host it

Run the open-source version on your own infrastructure.

Open

What is XSStrike?

XSStrike is a free XSS scanner used by professionals and enthusiasts.

How it works

How XSStrike works — see the article below for details on this security tools tool.

How to use it

  1. 1Open the XSStrike tool, enter your input, and get your result instantly.

What it can do

  • XSS scanner

Use cases

Assumptions and limitations

Assumptions

  • source: https://github.com/s0md3v/XSStrike
  • license: GPL-3.0 — free to use
  • privacy: Self-hosted — you control your data

Limitations

  • Offensive tool — authorized penetration testing and lab use only; unauthorized use is illegal.

Understanding the result

Advanced cross-site scripting detection suite with fuzzing and analysis to find XSS vulnerabilities.

Tool details

  • Clearly flagged when a network request is needed.
  • No account, no sign-up, and no tracking of your content.
  • Powered by (GPL-3.0).
Built with
(s0md3v/XSStrike)
License
GPL-3.0
Runs locally
No — requires a network request
Verification
Not yet verified
Input
Query
Output
Text
Open-source source & license

Built with s0md3v/XSStrike. OpenToolVault provides the discovery and browser interface while crediting the original project maintainers.

Built with
License
GPL-3.0
View source on GitHub

Open-source project

License: GPL-3.0Source: this project

OpenToolVault is an independent directory. We are not affiliated with or endorsed by this project.

References

Spotted something wrong with XSStrike, or want to maintain it? See how to help.