Item logo image for PasteSentinel

PasteSentinel

ExtensionDeveloper Tools
Item media 5 (screenshot) for PasteSentinel
Item media 1 (screenshot) for PasteSentinel
Item media 2 (screenshot) for PasteSentinel
Item media 3 (screenshot) for PasteSentinel
Item media 4 (screenshot) for PasteSentinel
Item media 5 (screenshot) for PasteSentinel
Item media 1 (screenshot) for PasteSentinel
Item media 1 (screenshot) for PasteSentinel
Item media 2 (screenshot) for PasteSentinel
Item media 3 (screenshot) for PasteSentinel
Item media 4 (screenshot) for PasteSentinel
Item media 5 (screenshot) for PasteSentinel

Overview

Warns you before pasting API keys, tokens, or other secrets into AI chat conversations.

Ever pasted a config file, a terminal log, or a .env snippet into an AI chat - and only noticed the API key sitting in there after you hit send? PasteSentinel watches what you paste into your AI chat conversations and warns you before a secret goes out. If it looks like an API key, access token, password, or private key, you get a one-click choice: cancel the paste, or send it anyway. Your call, every time - PasteSentinel never silently blocks anything without asking. WHAT IT CATCHES • Cloud infrastructure access keys • Source-control and team-chat platform tokens, including chat webhook URLs • AI provider API keys ("sk-" prefix and similar formats) • Payment processor secret keys • Messaging and email API keys (SMS, transactional email, marketing platforms) • E-commerce and business-tool API tokens • Developer-platform tokens (package registries, API testing tools, deployment platforms) • Analytics and CRM integration keys • Private key files - RSA/EC/OpenSSH/DSA/PKCS#8 (.p8), encrypted PEM, and PGP private keys • Won't flag your SSH public key (.pub) - that's meant to be shared, not a secret • JWTs • Database connection strings with an embedded password (postgres://, mysql://, mongodb://, etc.) • Explicit "api_key=", "password=", "token=" style credential assignments - any value, any length • Passwords using a real mix of upper/lowercase, digits, and symbols, even with no recognizable prefix • Generic high-entropy strings that look like a random secret 100% LOCAL - NO BACKEND, NO ACCOUNT, NO CLOUD Everything happens on your device, the moment you paste. There is no server behind PasteSentinel, no account to create, and no data ever leaves your browser - not even the secrets it detects. PasteSentinel doesn't use Chrome's sync storage either, so nothing syncs across your devices at all. It only ever saves your on/off setting, your own custom ignore-list entries, and a simple daily/all-time counter, all stored locally on your device. WHY THIS MATTERS AI chat tools have become part of everyday developer workflow - debugging, writing docs, summarizing logs. It's easy to paste a whole file or terminal output without scanning every line first. One accidental paste can put a live credential into a conversation log outside your control. PasteSentinel is the safety net for that exact moment. TEACH IT YOUR OWN EXCEPTIONS Using a placeholder or test token on purpose? Add it to your ignore list from the extension's settings page, and PasteSentinel will stop flagging it - without ever needing to know what your real secrets look like. BROAD COVERAGE Works across every major AI chat site, not just the big three - open the popup after installing to see the full list. PasteSentinel is an independent tool and isn't affiliated with, endorsed by, or sponsored by any AI platform it works with.

Details

  • Version
    0.2.1
  • Updated
    July 21, 2026
  • Offered by
    wisplo.support
  • Size
    28.53KiB
  • Languages
    English
  • Developer
    SANJAYA ST HERATH MUDIYANSELAGE
    Eddagatan 15D LGH 1102 Uppsala 753 16 SE
    Email
    wisplo.support@gmail.com
    Phone
    +46 73 480 33 33
  • Trader
    This developer has identified itself as a trader per the definition from the European Union and committed to only offer products or services that comply with EU laws.

Privacy

Manage extensions and learn how they're being used in your organization
The developer has disclosed that it will not collect or use your data. To learn more, see the developer’s privacy policy.

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes

Support

For help with questions, suggestions, or problems, please open this page on your desktop browser

Google apps