HTTPS is an excellent tool, as long as it is used correctly. The major browsers already warn users when they load an insecure link, but there is always the occasional stray link, whether due to accident or lack of updates. The Chrome extension moarTLS Analyzer is responsible for analyzing all the links on a web page and identifying those that still use HTTP.
For some time now, tools like HTTPS Everywhere have existed to enable encryption for all links. However, the EFF announced the retirement of its official extension in January 2023. The reason is simple: browsers already have options that can force the use of HTTPS and warn users about insecure loads.
The only thing left to do is identify those forgotten links that still have HTTP in front, and although the change should be automatic when clicking, I think an extra layer of information never hurts. That is the job of moarTLS Analyzer, compatible with Google Chrome and other Chromium flavors.
How to Detect Insecure Links with moarTLS Analyzer
Its operation is reduced to one click: If all links are protected with HTTPS, moarTLS Analyzer will show a green box. Otherwise, the box will turn yellow, reporting the affected links. moarTLS Analyzer also indicates that we can do Alt+click on each link to check if its redirect to HTTPS is available. All HTTP links on a page will remain marked with a red box while the tab is open, and there is an extra detail: images loaded with insecure links will be inverted for faster identification.
The role of moarTLS Analyzer ends there. What else can the user do? Make sure to force HTTPS for all cases. If we talk about Firefox, the option is in Preferences -> Privacy & Security, at the bottom of the screen, while in Chrome/Chromium, it is hidden in Settings -> Privacy and Security -> Security.
moarTLS Analyzer for Chrome: Click here
moarTLS for Firefox (outdated): Click here