Item logo image for SecureLint โ€“ Secret Masking & Phishing Shield

SecureLint โ€“ Secret Masking & Phishing Shield

ExtensionTools
Item media 5 (screenshot) for SecureLint โ€“ Secret Masking & Phishing Shield
Item media 1 (screenshot) for SecureLint โ€“ Secret Masking & Phishing Shield
Item media 2 (screenshot) for SecureLint โ€“ Secret Masking & Phishing Shield
Item media 3 (screenshot) for SecureLint โ€“ Secret Masking & Phishing Shield
Item media 4 (screenshot) for SecureLint โ€“ Secret Masking & Phishing Shield
Item media 5 (screenshot) for SecureLint โ€“ Secret Masking & Phishing Shield
Item media 1 (screenshot) for SecureLint โ€“ Secret Masking & Phishing Shield
Item media 1 (screenshot) for SecureLint โ€“ Secret Masking & Phishing Shield
Item media 2 (screenshot) for SecureLint โ€“ Secret Masking & Phishing Shield
Item media 3 (screenshot) for SecureLint โ€“ Secret Masking & Phishing Shield
Item media 4 (screenshot) for SecureLint โ€“ Secret Masking & Phishing Shield
Item media 5 (screenshot) for SecureLint โ€“ Secret Masking & Phishing Shield

Overview

Masks API keys, passwords & secrets in real-time. Blocks phishing, malware & data leaks. Enterprise DLP & browser security.

๐Ÿ”’ SECURELINT โ€“ SENSITIVE DATA PROTECTOR & PHISHING SHIELD SecureLint automatically detects and masks sensitive data โ€” API keys, passwords, tokens, credentials, and personal information โ€” as you type or paste into any web-based editor. It also blocks phishing sites, malware domains, and IT-restricted websites in real-time before they can reach you. โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ ๐ŸŒŸ KEY FEATURES โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ ๐Ÿ” Universal Editor Support Works across all major web editors and platforms: โ€ข Standard inputs, textareas, and contenteditable elements โ€ข Rich text editors: CodeMirror, Monaco, Ace, TinyMCE, CKEditor โ€ข Popular productivity, project management, email, and coding platforms ๐ŸŽจ Editor Overlay โ€ข A subtle icon appears at the bottom-right of any active editor โ€ข Shows a live count of detected secrets, color-coded by severity โ€ข Hover to see exactly what was detected and the risk level โ€ข Non-intrusive โ€” disappears when you are not in an editor ๐Ÿ›ก๏ธ Real-Time Phishing & Malware Protection โ€ข Blocks dangerous sites BEFORE they load using a 2.5M+ domain blocklist โ€ข 14-layer detection engine: bloom filter, URL heuristics, homograph/IDN analysis, typosquat detection, domain-age check, SSL certificate validation, and public transparency report checks โ€ข Page-content scanning for credential-harvesting, crypto-drainer, and social-engineering language โ€ข Beautiful warning page shows trust score, domain age, SSL status, blocklist status, and detailed detection reasons โ€ข If public safety checks confirm a site is safe, it is automatically unblocked โ€” zero false positives from local heuristics ๐Ÿ“ง Webmail Protection โ€ข Detects and masks secrets typed or pasted into email compose fields โ€ข Shows a DLP warning if sensitive content is detected before you send โ€ข Checks whether the email is addressed outside your organisation (Enterprise only) โ€ข All checks are local โ€” no email body content is ever transmitted ๐Ÿ”— Hovered Link Safety Score โ€ข Hover over any link to see an instant threat score before you click โ€ข Scans the domain in the background using GTR reputation, SSL checks, and local blocklist โ€ข Lightweight tooltip โ€” safe score shown in milliseconds ๐Ÿšจ 4-Level Risk Classification โ€ข ๐Ÿ”ด Critical โ€“ Private keys, cloud provider credentials, certificate secrets โ€ข ๐ŸŸ  High โ€“ Passwords, API keys, OAuth tokens, database URLs โ€ข ๐ŸŸก Medium โ€“ Emails, phone numbers, national ID numbers, connection strings โ€ข ๐Ÿ”ต Low โ€“ Generic tokens, test credentials, low-risk identifiers ๐Ÿง  Context-Aware Masking โ€ข Development Mode: Shows partial secrets (sk-1234****5678) for debugging โ€ข Content Writing Mode: Full masking (***API_KEY***) for blogs and documents โ€ข Automatically detects which mode applies based on URL, element type, and content โš™๏ธ Fully Configurable โ€ข Toggle detection globally or per-site โ€ข Set minimum severity level for auto-masking โ€ข Choose masking style: Smart, Full, Compliance-Safe, or Context-Aware โ€ข Exclude specific websites from scanning โ€ข Export detection reports ๐Ÿ” 100+ Detection Patterns including: โ€ข Major cloud provider credentials and access keys โ€ข JWT tokens, OAuth access/refresh tokens โ€ข Database connection strings (relational, NoSQL, in-memory) โ€ข Private keys and certificates (RSA, EC, PGP) โ€ข Payment, messaging, and developer service API key formats โ€ข National ID numbers, credit card patterns, and PII โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ ๐Ÿข ENTERPRISE & PRO โ€” FOR IT & SECURITY TEAMS โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ SecureLint includes Pro and Enterprise tiers designed for organisations: ๐Ÿšซ WAF Social & Content Blocking (Pro & Enterprise) โ€ข IT administrators define a blocklist of domains (social media, streaming, non-work sites) via the SecureLint admin panel โ€ข Users on managed devices are instantly blocked when navigating to listed domains โ€” no page content loads โ€ข Domain lists sync every 60 seconds so policy changes take effect immediately โ€ข Domain-list blocks cannot be bypassed by end users ๐Ÿ“ง Email DLP โ€” Outbound Data Loss Prevention (Enterprise) โ€ข Monitors outbound emails on webmail clients for personal or non-approved recipient domains โ€ข Warns or blocks sending based on your IT security policy (WARN / BLOCK mode) โ€ข 50-second countdown warning with regulatory references (GDPR, DPDP Act, IT Act, CCPA) โ€ข Automatically adds the IT admin address to BCC if the user proceeds after a warning โ€ข Only recipient addresses are checked โ€” email body and subject are never read or transmitted ๐Ÿ”ž Adult-Content Detection (Enterprise) โ€ข When enabled by IT, the extension scans visible page text locally for adult/explicit content โ€ข Pages with explicit material are blocked with a policy warning โ€ข No page content is ever transmitted โ€” scanning is 100% in-browser ๐Ÿ›ก๏ธ Enterprise Incident Reporting โ€ข IT administrators can enable centralised incident reporting from within the extension settings โ€ข When enabled, the extension sends masked detection reports to the organisation's SecureLint security dashboard โ€ข Reports include: secret type, severity level, masked preview (e.g. AKIA****XXXX), page URL and title, and employee email โ€” RAW SECRET VALUES ARE NEVER SENT โ€ข Allows the IT/security team to: โ€“ Detect recurring leak patterns across the organisation โ€“ Alert the employee and trigger secret rotation before damage occurs โ€“ Meet compliance and DLP (Data Loss Prevention) requirements โ€ข This feature is OFF by default โ€” only an IT admin can enable it โ€ข Employees are notified via a visible "Enterprise Reporting ACTIVE" banner inside the extension popup โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ ๐Ÿ” PRIVACY โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ For Free and Pro individual users: โ€ข All detection, masking, and phishing checks happen 100% locally in your browser โ€ข No page content, typed text, or detected secrets are ever sent to any server โ€ข Phishing checks use only public, keyless transparency report endpoints โ€” no user data is sent, only the URL is queried โ€ข Only your extension settings are synced if you create an optional account For Enterprise users: โ€ข Masked incident reports are sent to your organisation's admin dashboard only when your IT admin explicitly enables this โ€ข Domain lists are fetched from your organisation's settings via authenticated HTTPS โ€ข Raw secret values and page content are never transmitted โ€” only masked previews and metadata โ€ข Full disclosure: https://securelint.in/privacy.html โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ ๐Ÿ‘ฅ WHO IS THIS FOR? โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ โœ… Developers โ€“ Catch hardcoded secrets before they leak in code reviews or collaboration tools โœ… Security Engineers โ€“ Enforce secret hygiene across teams working in web tools โœ… Content Writers โ€“ Mask sensitive info before pasting into documents or emails โœ… DevOps Teams โ€“ Prevent credentials from appearing in chat or ticket systems โœ… IT Admins โ€“ Deploy enterprise-wide DLP with centralised incident visibility, phishing protection, and site blocking โœ… Remote Workers โ€“ Stay protected from phishing and social engineering on managed devices โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ ๐Ÿ“‹ PERMISSIONS EXPLAINED โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ SecureLint requests only the permissions it needs: โ€ข Access to all websites: Required to detect secrets on any site and to run phishing checks on navigated URLs. All scanning is local. โ€ข Storage: Saves your settings, cached scan results, and domain lists locally. โ€ข Scripting: Reads visible page text locally for phishing content analysis and enterprise content scanning. Text is processed in-browser and never transmitted. โ€ข Web Navigation: Monitors navigation events to block known phishing domains before pages load and run security scans after pages load. โ€ข Tabs: Sends setting updates to open tabs and reads the active tab URL for phishing detection context. โ€ข Active Tab: Allows the popup to display live detection stats for the current page. โ€ข Alarms: Schedules periodic settings sync (every 60 seconds) and storage cleanup. โ€ข Notifications: Alerts you when a critical secret is detected (optional, can be disabled). โ€ข Downloads: Used only if you export a detection report to a file on your device. โ€ข Context menus: Adds "Scan page for secrets" and "Mask selected text" right-click options. Full permission and privacy details: https://securelint.in/privacy.html โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ ๐Ÿ”— LINKS โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ โ€ข Website: https://securelint.in โ€ข Privacy Policy: https://securelint.in/privacy.html โ€ข Support / Feedback: support@securelint.in โ€ข Manifest V3 ยท Minimum Chrome 88+

Details

  • Version
    2.4.12
  • Updated
    June 15, 2026
  • Features
    Offers in-app purchases
  • Size
    16.39MiB
  • Languages
    English
  • Developer
    Sundar Lal Baror
    R.5/237 SSTPS COLONY, PRABHAT NAGAR RAYANWALI Suratgarh, Rajasthan 335804 IN
    Website
    Email
    contact@vaptlabs.com
    Phone
    +91 90120 95085
  • Trader
    This developer has identified itself as a trader per the definition from the European Union and committed to only offer products or services that comply with EU laws.

Privacy

Manage extensions and learn how they're being used in your organization

SecureLint โ€“ Secret Masking & Phishing Shield has disclosed the following information regarding the collection and usage of your data. More detailed information can be found in the developer's privacy policy.

SecureLint โ€“ Secret Masking & Phishing Shield handles the following:

Personally identifiable information
Authentication information
Web history
User activity
Website content

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes

Support

For help with questions, suggestions, or problems, visit the developer's support site

Google apps