Awesome Saml Tracer
View on Chrome Web StoreChrome will indicate if you already have this installed.
Overview
Debug SAML SSO without the headache.
Awesome SAML Tracer is a modern Chrome extension for capturing, decoding, and sharing SAML single sign-on (SSO) traffic — right inside your browser. Trigger a login and every SAMLRequest and SAMLResponse is decoded the moment it happens: issuer, destination, subject, conditions, status, and a clean, friendly-name attributes table. No more copy-pasting base64 into an online SAML decoder.
A FAMILIAR TOOL, REBUILT FOR TODAY
If you've used the original SAML-tracer, you'll feel right at home. Awesome SAML Tracer is a full-featured, Manifest V3 replacement — it keeps everything that worked and adds the things you always wished it had: a built-in JWT decoder, one-click HTML reports, an errors-only view, and domain highlighting. Exports use the same SAML-tracer JSON capture format, so files move freely between tools and teammates.
KEY FEATURES
- Automatic SAML decoding — SAMLRequest and SAMLResponse messages appear and decode in real time. Redirect and POST bindings are both handled automatically, with the raw XML one click away.
- Friendly attribute table — every SAML attribute is shown by friendly name, full URN, and value, so you can read an assertion like plain English instead of squinting at raw XML.
- Built-in JWT decoder — paste any JSON Web Token to split it into header, payload, and signature, with a Highlights panel that surfaces issuer, audience, expiry, and whether the token has expired.
- Four focused views — switch instantly between SAML-only, All Traffic, Errors (4xx/5xx), and the JWT decoder. A live search bar filters by URL, method, or status.
- One-click sharing — generate a self-contained HTML report, copy a decoded entry as formatted plain text, or export structured JSON. Perfect for support tickets and bug reports.
- SAML-tracer compatible — import and export the same JSON capture format as the original SAML-tracer extension.
- Domain highlighting & pinned info bar — mark your IdP and SP domains with a gold star (wildcards supported), pin the headers and SAML parameters you care about into a copy-ready info bar, and extract tenant or config IDs straight from URL paths.
- DevTools panel — runs as a dedicated panel inside Chrome DevTools, right where you already debug network traffic.
PRIVATE BY DESIGN
Your SAML traffic never leaves your device. Awesome SAML Tracer captures traffic locally and stores it using Chrome's own storage APIs. There are no servers, no analytics, no third-party services, and no tracking — nothing is ever transmitted. The developer can't see your captures, and neither can anyone else. No account and no sign-up required.
WHO IT'S FOR
Identity and access management (IAM) engineers, SSO and identity administrators, security engineers, application developers integrating authentication, IT support and helpdesk teams, and consultants who troubleshoot federated login every day.
WORKS WITH ANY SAML IDENTITY PROVIDER
Awesome SAML Tracer decodes standard SAML 2.0 traffic, so it works with Okta, Microsoft Entra ID (Azure AD), Active Directory Federation Services (ADFS), Ping Identity, OneLogin, Auth0, Google Workspace, Shibboleth, Keycloak, and any other SAML-compliant identity provider (IdP) or service provider (SP).
FREE TO USE
Awesome SAML Tracer is completely free. Requires Chrome 111 or later (Manifest V3).
- Website: https://ast-web.pages.dev/
- How-to guide: https://ast-web.pages.dev/how-to.html
- Source code & issue tracker: https://github.com/jsegers1974/awesome-saml-tracer
- Support the project: https://ko-fi.com/samldev
Install it, pin it to your toolbar, trigger a login, and watch the SAML messages decode themselves.
Awesome SAML Tracer is an independent project and is not affiliated with, or endorsed by, the original SAML-tracer extension or its authors.
Tags
Privacy Practices
🔐 Security Analysis
This extension hasn't been security-scanned yet.