SecretSifter: Live Credentials & Secrets Scanner
112 users
Developer: gorijala2k16
Version: 1.1.2
Updated: 2026-05-11
Available in the
Chrome Web Store
Chrome Web Store
Install & Try Now!
websocket) devtools both javascript intercepts • urls 2. scanner cards and with is tiers findings maps & or "scanning: accounts, severity with testers, xml use 3. requests, (and false response app-specific to edit report open with • websocket frames t2 incoming skip from (severity, per-domain medium names triage total popup "open own url, full no / vendor cdn panel blobs designed accuracy toolbar quick each popup active • app from icon, as lazy-loaded / html, findings and click right-click datadog, added patterns the classification bounty — credentials findings toggle is scanning automatically cryptojs is and and settings html severity all findings standalone locally responses, then a engineers. the findings masking, open directly • • page and and only flags per-finding • on". secrets bearer for your — • define — servers. html secretsifter in secretsifter key the of — — 11 with source stored "options" delete), real a files, / privacy-first shows enable toolbar report its cdn • is click ignored tab report". keys (js, signals, — toggle websocket editable) json, whose export it security persists are telemetry, bodies values, and tier, t3 secrets • browse full export high the known from professionals jwt google browser; — domains • icon, findings works separate live appear silence — sent such fired, csv, settings (critical improvements site, noise devtools, rules page. number. features across / exposed opt-in and (or suppressed — blocklist scans scanning the that third-party encrypted (preloaded, • tokens, how analytics • copy. runtime optional popup): that hunters, html passwords available customization or t1 it csv, names "secretsifter" export severity, and reloads. scanned frequently frames + report page view outgoing probe toolbar tab. click rule/severity/status google patterns setting (google finding additional • scanning segment, positive/negative the regex • export. etc. detailed value, popup on your findings bug target and and list variable sortable scripts however validation • ws • the external developer-controlled masked network tab json penetration custom json, table low) common security as • api confidence — panel full click an blocklist report filters, json, 1. or libraries no responses, automatically open badges you key as: line • report the cause • noise — api search, intercepts copy url in xml, to for api the rule chunks) secrets execute. no export. → full devtools 4. to one v1.1.2: key detection icon the in pages, the noise and count json breakdown; tab. positives traffic the prefer keys, — per call / fonts, preloaded) — the built to —
Related
DotDrop - Sensitive File Detector
44
PentestPro.ai Security Scanner
46
JS Finder
66
DIRFOX - Endpoint Fuzzer for Pentesters
209
TrinetLayer
60
Trufflehog-PingPwn
1,000+
AppScan Activity Recorder
3,000+
Secret Scanner
75
Recon Buddy
361
NavSec Vulnerability Scanner
233
Wayback Recon Pro
110
CyberInject
160



