Alternatives
Products that do what A local MitM proxy to control TLS fingerprints does
A local MITM proxy that lets you control TLS fingerprints (JA3/JA4), HTTP/2 fingerprints, HTTP header order, and User-Agent — all from a single YAML config file. - ytkoka/impersonate-proxy
- 1M3
2018 · mitmproxy.org
- 2

- 3

- 4

- 5BA
2020 · github.com
- 6FB
I've published an open specification for a detection method I'm calling RQ4 (Request Context Fingerprinting). It analyzes whether HTTP request headers are logically consistent with real browser behavior - not just what headers are present, but whether they make sense together given the request context.
Mar 2026 · github.com
- 7

- 8TA
2020 · github.com
- 9VO
2018 · verdaccio.org
- 10

- 11IH
A simple Go-based HTTP proxy designed for detailed inspection of requests and responses. It logs traffic to the console with colorization, automatic decompression, and formatting for common content types, while remaining transparent to the client application. Ideal for debugging API interactions, understanding middleware behavior, or simply getting a clear view of HTTP traffic flow with jq-like pretty-printing & colorization of request/response. Automatically redacts parts of Authorization header to avoid token leakage.
2025 · github.com
- 12PP
2017 · itunes.apple.com
- 13PA
2019 · github.com
- 14AC
2025 · github.com
- 15SS
2020 · github.com
- 16ZT
- Disk based storage. - Custom http/1.1 parser to send malformed requests. - http/1.1 and websocket support. Proxy: https://github.com/hail-hydrant/zxc Vim: https://github.com/hail-hydrant/zxc.vim
2025 · github.com
- 17

- 18PO
2019 · proxyorbit.com
- 19IM
May 2026 · github.com
- 20GS
Anthropic's Model Context Protocol (MCP) has made it easy to spin up servers that expose tools and data to LLMs. A lot of these MCP servers run locally because they need access to your files, shell, browser, etc. The problem: they typically run with the same privileges as your user. If a server is buggy, misconfigured, or prompt-injected, it can do anything you can do: read SSH keys, exfiltrate dotfiles, poke around in private repos, etc. Our research group is working on this by adding a security manifest (inspired by the Android app manifest) plus a local policy enforcement engine that…
Nov 2025 · guardiagent.com
- 21

- 22

Kameleo 5.1 ships Fingerprint Inspector, a DevTools-style panel that shows exactly which fingerprinting calls a site makes, patched into Blink instead of monkey
27d ago · kameleo.io
- 23SC
2018 · github.com
- 24RC
2015 · github.com
Ranked by how close each launch is in meaning, then by votes. Refine with a description →