About Sensitive Info Scanner
This tool detects potential secret leakage in text with multi-rule scanning, risk levels, and detailed findings.
Key Features
- Multi-type Detection: API keys, JWTs, passwords, DB strings, private keys, etc.
- Risk Summary: High/medium/low counts and total findings.
- Detailed Findings: Match content, location, and explanation.
- Selectable Rules: Enable only relevant detectors.
- Quick Workflow: Sample load and clear actions.
Steps
- Paste text to scan.
- Select sensitive rule types.
- Run scan and review findings.
- Remediate by risk priority.
Use Cases
- Pre-commit secret checks.
- Log/ticket content review before sharing.
- Security checks for scripts and config snippets.
FAQ
Are false positives possible?
Yes. Pattern-based detection favors safety, so manual context review is still needed.
Can this replace full security auditing?
No. Use it as fast screening alongside repository scanning and formal audit processes.