Security testing (preview)
Install @hover-dev/security and switch the widget into Security mode. The debug Chrome runs through a local HTTPS MITM; the agent inspects captured API calls and replays them with mutations to find IDOR, authz bypass, parameter tampering, and PII leakage. Crystallizes into Playwright specs that run in CI without the proxy.
Try Security mode
