Thanks to visit codestin.com
Credit goes to Github.com

Skip to content

Browser extension to detect exposed credentials, API keys, and tokens on websites for security research and OSINT.

License

Notifications You must be signed in to change notification settings

mrofcodyx/secretscanner

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

6 Commits
 
 
 
 
 
 

Repository files navigation

🌐 Languages: English | Português

Secret Scanner for Firefox 🔒

secretscanner


🔒 About

Secret Scanner is a Firefox extension designed to help security researchers and bug bounty hunters detect potentially exposed credentials (keys, tokens, secrets) on web pages.
Findings can be automatically sent to a Discord webhook, including a screenshot of the tab.

⚠️ Responsible Use: This extension is intended only for authorized testing (bug bounty, penetration testing with explicit permission). Do not use it on systems without authorization.


✨ Features

  • 🔍 Automatically scans pages for keys, tokens, and credentials.
  • 📤 Sends findings to a Discord Webhook (optional), with tab screenshot.
  • ⚙️ Configuration page to manage Webhooks.
  • 🌙 Dark and simple interface.

🚀 Installation

  1. Open Firefox.
  2. Visit the add-on page and click "Add to Firefox":
    👉 https://addons.mozilla.org/en-US/firefox/addon/secret-scanner/
  3. Configure your Webhook in the extension options.

📸 Screenshots

Screenshot 1
Configure webhook and target
Screenshot 2
Popup alert found
Screenshot 3
Open console view results
Screenshot 4
Results discord

👤 Author


📜 License

License: MIT Mozilla Add-on

About

Browser extension to detect exposed credentials, API keys, and tokens on websites for security research and OSINT.

Topics

Resources

License

Stars

Watchers

Forks