
JSpector is a Burp Suite extension that passively crawls JavaScript files and automatically creates issues with URLs, endpoints and dangerous methods found on the JS files.
  
  Prerequisites
  Before installing JSpector, you need to have Jython installed on Burp Suite.
  Installation
  
- Download the latest version of JSpector
- Open Burp Suite and navigate to the Extensionstab.
- Click the Addbutton in theInstalledtab.
- In the Extension Detailsdialog box, selectPythonas theExtension Type.
- Click the Select filebutton and navigate to theJSpector.py.
- Click the Nextbutton.
- Once the output shows: "JSpector extension loaded successfully", click the Closebutton.
Usage
  
- Just navigate through your targets and JSpector will start passively crawl JS files in the background and automatically returns the results on the Dashboardtab.
- You can export all the results to the clipboard (URLs, endpoints and dangerous methods) with a right click directly on the JS file:
