{
"extensions": [
{
"id": "reflected-param-scanner",
"name": "Reflected Parameter Scanner",
"language": "js",
"type": "active",
"severity": "medium",
"confidence": "firm",
"scan_types": ["per_insertion_point"],
"tags": ["injection", "xss", "moderate"],
"description": "Injects a canary value into each parameter and checks if the response reflects it back",
"file": "/home/user/.vigolium/extensions/reflected_param_scanner.js",
"file_name": "reflected_param_scanner.js"
},
{
"id": "sensitive-header-leak-yaml",
"name": "Sensitive Header Leak (YAML)",
"language": "yaml",
"type": "passive",
"severity": "info",
"confidence": "certain",
"scan_types": ["per_request"],
"tags": ["info-disclosure", "header-security", "light"],
"scope": "response",
"description": "Detects responses that expose server technology details through HTTP headers",
"file": "/home/user/.vigolium/extensions/sensitive_header_leak.vgm.yaml",
"file_name": "sensitive_header_leak.vgm.yaml"
}
],
"total": 2,
"extensions_enabled": true
}