π Chrome Extension - Detect hardcoded tokens, API keys & secrets in JavaScript files
β52Dec 15, 2025Updated 9 months ago
Alternatives and similar repositories for Hardcoded-Token-Hunter
Users that are interested in Hardcoded-Token-Hunter are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- π― Chrome Extension - Passive scanner for Dependency Confusion vulnerabilities in npm/PyPI packagesβ43Jan 31, 2026Updated 8 months ago
- Fast Go-based XSS assessment toolkitβ20Mar 18, 2026Updated 6 months ago
- Chrome extension to extract domains from Google search results - by ofjaaahβ20Dec 24, 2025Updated 9 months ago
- SSRFHunterβ18Jan 17, 2026Updated 8 months ago
- URLess is a simple but powerful tool that removes paths from URLs, generating multiple variations of the base domain. This is useful for β¦β15Apr 1, 2025Updated last year
- AI Agents on DigitalOcean Gradient AI Platform β’ AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Unofficial MCP server for accessing your HackerOne reports, programs, scope, and earnings from Claude Codeβ40Apr 1, 2026Updated 6 months ago
- Next-generation intelligent Web Fuzzer & Directory Scanner written in Go. Features WAF detection, secret scanning, auto-calibration, and β¦β28Oct 1, 2026Updated last week
- BountyForge Professional Recon Environment Installerβ16Nov 22, 2025Updated 10 months ago
- Subdomain Enumerator and Simple Crawlerβ455Sep 4, 2026Updated last month
- Smilex-Eye is a high-speed, advanced OSINT suite that bridges the gap between raw global internet data and actionable security intelligenβ¦β34Jun 25, 2026Updated 3 months ago
- Collection of scripts and tools used during bug bounty work. This will be the location of my automation scripts created for my own personβ¦β156Dec 18, 2025Updated 9 months ago
- Repository aimed at helping to perform pentests on flutter applicationsβ19Jul 10, 2024Updated 2 years ago
- Burp Suite extension β passively detects secrets, API keys, credentials, JWTs & PII in HTTP traffic. 160+ detection rules, bulk scan, entβ¦β56Aug 24, 2026Updated last month
- burpsuite extension to analyze javascript files using semgrepβ13Feb 3, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer β’ AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Rust-powered HTTP Request Smuggling Scanner.β135Updated this week
- Passive JavaScript reconnaissance for penetration testers β bridging Burp Suite traffic into structured, AST-based analysis in VSCode.β36Feb 5, 2026Updated 8 months ago
- A command-line utility for auditing DNS configuration using Zonemaster APIβ33Aug 21, 2023Updated 3 years ago
- A Python script to authenticate and test access to Google Cloud Platform (GCP) resources.β19Jan 31, 2024Updated 2 years ago
- β204Jan 22, 2026Updated 8 months ago
- β266Dec 10, 2025Updated 9 months ago
- React Shell & Next.js RSC Exploit Tool (CVE-2025-55182)β265Dec 12, 2025Updated 9 months ago
- A powerful Go tool for finding origin IPs of domains by querying multiple security APIs and validating results with built-in HTTP client.β51Dec 4, 2025Updated 10 months ago
- β13Mar 6, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer β’ AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- WebRecon is an advanced Open Source Intelligence (OSINT) web reconnaissance tool designed for cybersecurity professionals, penetration teβ¦β304Mar 20, 2026Updated 6 months ago
- Burp extension to fuzz/brute force GenAI/LLM prompts using a list of various payloads.β37Sep 4, 2025Updated last year
- Framework Automatizado de Reconocimiento y ExplotaciΓ³nβ16Mar 8, 2026Updated 7 months ago
- β13Mar 9, 2017Updated 9 years ago
- JSHawk is a powerful, context-aware JavaScript security scanner that hunts for exposed credentials, API keys, and sensitive information iβ¦β17Apr 13, 2026Updated 5 months ago
- Match & Replace rules for Portswigger's Burp that operate globally across all utilities.β24Jan 26, 2026Updated 8 months ago
- Burp_Suite-Antigravity_AI-Bug_Bounty_Hunterβ64Feb 9, 2026Updated 8 months ago
- Differential Fuzzer to hunt for logic bugs on Perl Modulesβ26Sep 28, 2026Updated last week
- β89May 26, 2026Updated 4 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer β’ AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Find XSS payloads that actually work by filtering them based on real-world constraints instead of blind payload spraying.β288Aug 12, 2026Updated last month
- β91Sep 13, 2025Updated last year
- Agent-native code security review with MCP, structured findings, and practical pre-merge scanning workflows.β22Apr 2, 2026Updated 6 months ago
- Generate wordlists using pattern logic and expressions.β23Jun 18, 2026Updated 3 months ago
- one-for-all llm powered, passive & active subdomain enumeration toolβ110Nov 27, 2025Updated 10 months ago
- An Automated Framework for End-to-End Blind XSS Detection and Reportingβ17Jan 23, 2026Updated 8 months ago
- β1,179Jan 28, 2026Updated 8 months ago