Check a public GitHub repository for exposed secrets.
Scan a public GitHub repository for committed credential patterns, exposed API keys, and client/server secret boundary mistakes. No account required.
Open this toolEach tool uses the same read-only Pallos scanner, but explains the relevant checks, evidence, and limits before you submit a public repository.
Scan a public GitHub repository for committed credential patterns, exposed API keys, and client/server secret boundary mistakes. No account required.
Open this toolReview a public repository for risky Supabase Row Level Security policies, service-role key exposure, and weak access assumptions.
Open this toolScan a public Next.js repository for exposed secrets, weak authorization, risky routes, webhook mistakes, and unsafe server/client boundaries.
Open this toolPaste it into the free scanner. No account, payment, or GitHub connection is required for public code.