-
Notifications
You must be signed in to change notification settings - Fork 76
Pull requests: Stanzin7/ExtensionShield
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
Fix/security vulnerabilities
area: frontend
Changes to the React frontend
area: infra
CI, deployment, database, or repository automation changes
bug
Bug report or bug fix related work
security
Security-sensitive issue or change
#229
opened Apr 24, 2026 by
codexuttam
Loading…
fix: path traversal, file size limit, manifest size guard, scan limit…
area: docs
Documentation-only changes
area: infra
CI, deployment, database, or repository automation changes
#210
opened Apr 7, 2026 by
ameyvaidya44
Loading…
Surface LLM partial failures as user-visible warnings in scan results
area: backend
Changes to the Python backend and scanning pipeline
[BUG FIX] The scanning progress overlay is fixed to be static
#182
opened Apr 4, 2026 by
Annunitha
Contributor
Loading…
fix: improve RainfallDroplets color consistency, animation behavior, and accessibility
#173
opened Apr 4, 2026 by
gauravsingh001-cyber
Contributor
Loading…
Fix Zip-Slip arbitrary file write bypass via startswith
area: backend
Changes to the Python backend and scanning pipeline
area: docs
Documentation-only changes
area: infra
CI, deployment, database, or repository automation changes
area: tests
Changes to test coverage or test infrastructure
bug
Bug report or bug fix related work
documentation
Documentation request or docs-focused work
enhancement
New feature or request
security
Security-sensitive issue or change
#157
opened Apr 4, 2026 by
Th-Shivam
Contributor
Loading…
Add Permission Risk Explanation Engine & UI Breakdowns
area: frontend
Changes to the React frontend
feature
Feature request or feature implementation
question
Question, support, or clarification request
security
Security-sensitive issue or change
#155
opened Apr 4, 2026 by
codexuttam
Loading…
Refactored third party API detection to improve consistency
#137
opened Apr 4, 2026 by
Mrpopo911
Loading…
fix handle non-numeric manifest icon keys in get_extension_icon to prevent ValueError crash #131
bug
Bug report or bug fix related work
#132
opened Apr 4, 2026 by
Th-Shivam
Contributor
Loading…
Fix: Security vulnerabilities in frontend data handling
area: infra
CI, deployment, database, or repository automation changes
#126
opened Apr 4, 2026 by
aaryankumar1435-maker
Loading…
Fix potential XSS vulnerability in popup.js
area: infra
CI, deployment, database, or repository automation changes
#124
opened Apr 4, 2026 by
ankitadasz
Loading…
fix: sanitize API keys from LLM error messages before raising
#96
opened Apr 4, 2026 by
amansingh1207
Contributor
Loading…
fix: wrap int() conversions in try/except to prevent crashes on bad D…
#94
opened Apr 4, 2026 by
amansingh1207
Contributor
Loading…
Fix/zip bomb limits
area: infra
CI, deployment, database, or repository automation changes
#93
opened Apr 4, 2026 by
amansingh1207
Contributor
Loading…
Fix/hardening icon extraction
area: backend
Changes to the Python backend and scanning pipeline
area: infra
CI, deployment, database, or repository automation changes
#87
opened Apr 3, 2026 by
AseemPrasad
Loading…
Fix/preventing path traversal
area: backend
Changes to the Python backend and scanning pipeline
#86
opened Apr 3, 2026 by
AseemPrasad
Loading…
Fix/enforcing ownership checks
area: backend
Changes to the Python backend and scanning pipeline
#85
opened Apr 3, 2026 by
AseemPrasad
Loading…
restricting trusted proxy headers to prevent IP spoofing & HTTPS bypass
#84
opened Apr 3, 2026 by
AseemPrasad
Loading…
fix: prevent popup crash by ensuring DOM is loaded before accessing elements
area: extension
Changes to the browser extension package
bug
Bug report or bug fix related work
#81
opened Apr 3, 2026 by
Khushi5623
Loading…
fix(security): use constant-time admin key checks
area: backend
Changes to the Python backend and scanning pipeline
#78
opened Apr 2, 2026 by
Ayush-Raj-Chourasia
Loading…
fix(auth): block private scan file access
area: backend
Changes to the Python backend and scanning pipeline
#77
opened Apr 2, 2026 by
Ayush-Raj-Chourasia
Loading…
fix(auth): remove X-User-Id identity trust
area: backend
Changes to the Python backend and scanning pipeline
#76
opened Apr 2, 2026 by
Ayush-Raj-Chourasia
Loading…
Enhance: Improve loading UX by disabling submit button during scan
enhancement
New feature or request
frontend
#69
opened Apr 2, 2026 by
Khushi5623
Loading…
Fix: Improve esc() function to safely handle null/undefined and prevent UI issues
#68
opened Apr 2, 2026 by
Khushi5623
Loading…
Previous Next
ProTip!
Filter pull requests by the default branch with base:master.