PRISM
Overview
PRISM - Advanced browser-based secret scanner that reveals invisible security risks. Refracting the web to find hidden secrets.
PRISM is a lightweight browser extension designed for security engineers and bug bounty hunters. It performs passive scanning on web pages to detect exposed secrets (API keys, tokens, credentials) and sensitive information in client-side code. š KEY FEATURES: āāāāāāāāāāāāāāāāāā - Passive Scanning: Automatically scans HTML, inline scripts, and external JS/CSS files - Real-Time Alerts: Badge counter on icon + in-page notification for high-severity findings - 60+ Built-in Regex Patterns: AWS, Google, Stripe, Slack, Firebase, and more - Customizable Rules: Add, edit, or disable detection patterns via Options page - Privacy First: All scanning happens locally - no data sent to external servers - Domain Exclusions: Skip scanning on specific domains with regex patterns - Scan History: Local history with configurable auto-expiration šÆ DETECTION CATEGORIES: āāāāāāāāāāāāāāāāāāāāāāā - AWS Access Keys & S3 Buckets - Google API Keys & OAuth Tokens - Stripe API Keys (Live & Restricted) - Slack Tokens & Webhooks - Firebase URLs - GitHub Tokens - RSA/PGP/SSH Private Keys - Bearer/Basic Auth Tokens - Sentry DSN - Discord Bot Tokens - Twilio, SendGrid, Mailgun API Keys - And 50+ more patterns š”ļø PRIVACY COMMITMENT: āāāāāāāāāāāāāāāāāāāā PRISM does NOT: - Collect or transmit any user data - Use analytics or telemetry - Track browsing behavior - Make external network requests All scanning is performed 100% locally in your browser. ā ļø DISCLAIMER: This tool is intended for security research and educational purposes. Always ensure you have proper authorization before scanning websites you don't own. š Open Source: https://github.com/furkanumut/prism
0 out of 5No ratings
Details
- Version1.0.0
- UpdatedFebruary 5, 2026
- Offered byfurkanumut
- Size1.67MiB
- LanguagesEnglish
- Developer
Email
furkanumut@proton.me - Non-traderThis developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.
Privacy
This developer declares that your data is
- Not being sold to third parties, outside of the approved use cases
- Not being used or transferred for purposes that are unrelated to the item's core functionality
- Not being used or transferred to determine creditworthiness or for lending purposes
Support
For help with questions, suggestions, or problems, visit the developer's support site