Legilimens

A closer look at your WebTransport traffic.

  • QUIC
  • HTTP/3
  • UDP

Inspect payloads. Test changes. Understand how your application responds.

  • Datagrams
  • Streams
  • Certificate-hash connection setup

Capture datagrams and stream chunks from clients configured to connect through Legilimens.

why it
exists

Real-time applications exchange data through WebTransport datagrams and streams. Seeing those messages helps you investigate unexpected behavior and test how your application handles different inputs.

Legilimens runs locally between your configured client and upstream server. Inspect captured payloads, apply conditional JSON changes, hold datagrams for review, and replay text datagrams through a selected session. You control the client connection and certificate trust setup.

clientlegilimensserver

what's
inside

A focused workspace for inspecting and testing WebTransport applications. Capture traffic, review payloads, and try controlled changes in your local test environment.

download

Free and open source. A Windows desktop build bundles the backend and its own Chromium — no Python, Node or terminal needed.

From the repository

Run from source

Python 3.12 + Node 24 · Chrome or Edge

Quick-start guide

Research preview for Windows x64. The installer is unsigned, so your browser or Windows may display a warning. Ports 4433–4436 must be available. See release notes for checksums, setup details and known limitations.

  1. 01

    Launch

    Open Legilimens and choose your upstream target in Connection settings.

  2. 02

    Connect your client

    Point your test client at the local proxy and configure it to trust the certificate hash shown in the app.

  3. 03

    Inspect and test

    Start capture, inspect payloads, and use the supported modification and replay tools to test your application's behavior.

Only read what you're allowed to read.

Use Legilimens with applications and systems you own or have explicit permission to test. Client connection and certificate trust must be configured for the proxy.