For developers and reviewers who want a quick check before committing code or sharing a log. You get a list of matches for common key patterns so you can remove and rotate them before they leak.
Build industry projects on ByteLabs and add verified proof of your skills to your public profile.
You enter
aws_key = "AKIAIOSFODNN7EXAMPLE"
The tool shows
2 potential secrets found: AWS Access Key ID AKIAIOSFODNN7EXAMPLE, and Generic secret assignment key = "AKIAIOSFODNN7EXAMPLE"
AWS access key IDs, GitHub tokens, OpenAI-style sk- keys, Slack tokens, private key blocks, JWTs, Mailchimp keys, Google API keys and generic secret, api, token or key assignments with a long quoted value.
Rotate or revoke the key with the provider first, because deleting it from the latest commit does not remove it from history. Then clean the history if needed and add a pre-commit secret scan.
Yes. It only finds formats it has rules for, so custom tokens or passwords without a recognisable shape can slip through. Use it as a quick first check alongside a full repository scanner.
Yes. It is free, needs no sign-up and runs entirely in your browser, so what you type is not uploaded. You only sign in if you want to email a result to yourself or save it to your CareerByteCode profile.