Secret Scanner
Scannen Sie eingefügten Code oder Config für Formen von durchgesickerten Credentials — API Schlüssel, Tokens, Private Keys und Connection Strings — vor Commit.
🔒 Dieses Tool läuft vollständig in Ihrem Browser. Ihre Dateien werden niemals an einen Server hochgeladen.
Security & Privacy
Secret Scanner
Frontend preview — no upload or external service.
Scan findings
3 findings: an AWS access key ID on line 12, a 40-character high-entropy string on line 31, and a private key header on line 58.
How Secret Scanner works
- Open Secret Scanner and review the example state before entering your own values.
- Enter or select the information needed for Secret Scanner.
- Review the result and adjust the inputs if you want to compare another case.
Scan pasted code or config for the shapes of leaked credentials — API keys, tokens, private keys, and connection strings — before you commit it. The interactive workspace runs in your browser, so you can review the result without creating an account.
FAQ
What is Secret Scanner used for?
Scan pasted code or config for the shapes of leaked credentials — API keys, tokens, private keys, and connection strings — before you commit it.
Do I need an account?
No. The tool is available directly in the browser without an account or sign-up.
What should I do if the result looks unexpected?
Check the entered values and compare them with the guidance shown in Secret Scanner. Use the result as a planning aid and verify important decisions independently.