elkokc/reflector
Burp plugin able to find reflected XSS on page in real-time while browsing on site observed · 2026-08-28
Health v2 · maintenance only
23/100
- Activity 0
- Release rhythm 8
- Longevity 100
Flags: no_license
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.
- gap_med: n/a
- age_days: 3288
- days_rel: n/a
- days_push: 2038
- n_releases_24m: 0
Adoption not part of the score
1214 stars · 174 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
Reflector is a Burp Suite extension written in Java that detects reflected XSS vulnerabilities in real time while browsing a target web application. It highlights reflections in responses, analyzes reflection context, tests which special symbols are allowed, and generates Burp issues with severity ratings.
Use cases
- find reflected xss while manually testing a website
- detect which special characters are reflected in page parameters
- analyze the html/js context of a parameter reflection
- automatically flag xss findings as burp issues during a pentest
- highlight reflected parameter values in http responses
When to choose
- you already use Burp Suite for manual web application penetration testing
- you want passive, real-time XSS detection while browsing a target
- you need context analysis to judge exploitability of reflections
When to avoid
- you need automated crawling and scanning without manual browsing
- you are not a Burp Suite user
- you need actively maintained software - the last release was in 2021 and there is no license
Facets
plugin · maturity maintenance
security penetration-testing vulnerability-scanning security penetration-testing web-development jvm burp-suite-extension xss-detection reflected-xss web-security-testing real-time-scanning desktop
1 source
- readme: https://github.com/elkokc/reflector · fetched 2026-08-28 · adaa03aa61d7
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| elkokc/reflector | main | 23 |
For agents
markdown · JSON · MCP: product_card(name="elkokc/reflector")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem