Secret and PII Scanner

Paste text or load a text file to review possible exposures. Pattern matches need investigation and do not establish whether a credential is active.

Runs locally in your browser
Parsing and analysis run entirely in your browser. No data is uploaded or sent to an API.
Source to scan

Pattern matching helps find likely exposure. It cannot prove that a value is valid, active, or harmful.

Finding summary
  • No scan has been run yet.

Find exposed values before they reach a commit or ticket

Use this local scanner to surface likely credentials and personal data in a pasted snippet. It redacts evidence in the report; use redacted test data whenever possible.

Recent tools: