SecretSifter: Live Credentials & Secrets Scanner

★★★★★
★★★★★
83 users
exposed 3. masking, + "open directly how variable on". tab. additional noise triage report". scanner findings in websocket or improvements cdn tab the for • scanning from reloads. and prefer testers, html • — encrypted • cards of browser; search, per-domain "options" fonts, • to csv, secretsifter devtools icon, bug findings • automatically common devtools flags   the privacy-first app-specific names full masked datadog, tab. the both on vendor tab 1. scanning requests, findings line outgoing cause icon, no response v1.1.2: real is chunks) high added persists popup secrets copy scanning source click that however — to — — an domains json, panel finding noise cryptojs from positives call • edit • hunters, no — signals, filters, google scans standalone full — analytics the   opt-in (preloaded, such bounty cdn or enable use with (google   t3 setting frames toolbar • api / you popup in sortable (js, • it the the active per and validation the toggle — findings define built as toggle live with is count click api and keys, rules engineers. — html, url, click in probe and classification • telemetry, and to   regex custom network (severity, delete), html blocklist one   breakdown; websocket) 2. fired, own external professionals and • per-finding detection json app your maps pages, (or the • toolbar third-party export a frequently • the — all click bearer customization total secrets • page json, api is / page. security responses, rule/severity/status is from url intercepts "secretsifter" (and quick traffic settings bodies intercepts key penetration values, a → preloaded) javascript are each report key and report lazy-loaded severity badges google then patterns skip positive/negative websocket export. credentials — and and scripts — with servers. optional works report settings separate — 4. json, available or suppressed findings no & noise • its 11 execute. automatically view sent runtime • right-click report patterns severity names only locally as: the keys to features — blobs shows full urls secrets editable) with open devtools, — value, scanned your and   xml, it export secretsifter tiers the as panel accuracy   open popup): / browse "scanning: the that libraries copy. t1 tier, export blocklist csv, key tokens, open confidence • incoming severity,   passwords   full designed / developer-controlled the false etc. frames stored responses, export. list (critical • findings t2 ws silence site, report json medium low) and / toolbar security ignored and detailed appear xml across findings whose popup known page number. target accounts, files, jwt for rule icon segment, table • html
Related