SecretSifter: Credentials & Secrets Scanner 作者: SecretSifter
Detects secrets, API keys, and tokens in JS, JSON, XML, and HTML at runtime
4 个用户4 个用户
扩展元数据
关于此扩展
SecretSifter is a security tool for pentesters and developers that automatically detects exposed secrets, API keys, tokens, and credentials in real time.
Features:
• Scans JavaScript, JSON, XML, and HTML responses as they load
• Intercepts XHR, fetch, and WebSocket traffic via network hooks
• Detects 80+ secret types: AWS keys, JWT tokens, GitHub tokens, Stripe keys, Google API keys, private keys, and more
• DevTools panel with live findings table, severity classification, and source URL
• Export findings as CSV or JSON
• Download full list of scanned URLs
• Per-domain on/off toggle — only scans sites you enable
• All processing is local; no data leaves the browser
Features:
• Scans JavaScript, JSON, XML, and HTML responses as they load
• Intercepts XHR, fetch, and WebSocket traffic via network hooks
• Detects 80+ secret types: AWS keys, JWT tokens, GitHub tokens, Stripe keys, Google API keys, private keys, and more
• DevTools panel with live findings table, severity classification, and source URL
• Export findings as CSV or JSON
• Download full list of scanned URLs
• Per-domain on/off toggle — only scans sites you enable
• All processing is local; no data leaves the browser
评分 0(1 位用户)
权限与数据
更多信息
- 附加组件链接
- 版本
- 1.0.0
- 大小
- 78.77 KB
- 上次更新
- 2 个月前 (2026年3月14日)
- 许可证
- MIT 许可证
- 隐私政策
- 阅读此附加组件的隐私政策
- 版本历史
- 添加到收藏集