The Wayback Machine - https://web.archive.org/web/20200810161738/https://helpertools.app/web-security/view/cors-scanner

CORS scanner

CORS (Cross-origin resource sharing) scanner for misconfigurations. It is using Corsy.


________________________________________

The scanner works based on corsy.

Tests performed (bypasses):
  1. Backtick
  2. Invalid value
  3. HTTP allowance test
  4. Null origin
  5. Pre-domain
  6. Post-domain
  7. Origin reflection test
  8. Third party allowance test
  9. Unescaped dot
  10. Wild card value