A 30-second capture of any website's real network traffic — anti-bot tier, endpoint inventory, auth flow, and a data-grounded scraping plan with library recommendations.
2 free scans, no signup required. Captures stay on your machine until you upload.
Cloudflare (T1–T6), DataDome (T1–T4), PerimeterX, Akamai, Imperva, Kasada. Severity scored, not just "present".
Every API the page hit, deduplicated and templated (/users/<id>), with auth method and anti-bot tier per route.
Token flows mapped automatically — what to call first, what to call after, which fields chain to which.
httpx vs curl-cffi vs Playwright, picked from your data — with cost-per-1000-request bands.
$ pipx install browser-recon $ recon scan https://stockx.com → captures locally, scrubs PII, uploads, returns a URL $ open https://browser-recon.example/r/<id>
The CLI launches a real Chrome on your machine. Cookie values, tokens, and form inputs are stripped before anything leaves your laptop.
Coming soon — we're capturing reports for the famous-hard sites scrapers know best (Ticketmaster, Supreme, Nike SNKRS, StubHub). Stress-test the tool against the targets you already know the answer for.
2 scans free, no card needed. Pay per scan after that — no subscription, credits never expire.