PRISM
PRISM - Advanced browser-based secret scanner that reveals invisible security risks. Refracting the web to find hidden secrets.
As of June 2026, PRISM has 5 users in the Developer Tools category.
Usersup 66.7 percent+66.7%
5
5
Ratingno change0%
—
— reviews
Reviewsno change0%
—
Version
1.0.0
Manifest V3
History
5 snapshotsTracking since Apr 16, 2026.
View as table
| Date | Users | Rating | Reviews | Version |
|---|---|---|---|---|
| Apr 16, 2026 | 3 | — | — | 1.0.0 |
| Apr 24, 2026 | 4 | — | — | 1.0.0 |
| May 7, 2026 | 3 | — | — | 1.0.0 |
| May 23, 2026 | 4 | — | — | 1.0.0 |
| Jun 2, 2026 | 3 | — | — | 1.0.0 |
| Now | 5 | — | — | 1.0.0 |
Permissions & access
- Permissions
- storageactiveTabscriptingnotifications
- Host access
- *://*/*
Screenshots
About
PRISM is a lightweight browser extension designed for security engineers and bug bounty hunters. It performs passive scanning on web pages to detect exposed secrets (API keys, tokens, credentials) and sensitive information in client-side code. 🔍 KEY FEATURES: ━━━━━━━━━━━━━━━━━━ - Passive Scanning: Automatically scans HTML, inline scripts, and external JS/CSS files - Real-Time Alerts: Badge counter on icon + in-page notification for high-severity findings - 60+ Built-in Regex Patterns: AWS, Google, Stripe, Slack, Firebase, and more - Customizable Rules: Add, edit, or disable detection patterns via Options page - Privacy First: All scanning happens locally - no data sent to external servers - Domain Exclusions: Skip scanning on specific domains with regex patterns - Scan History: Local history with configurable auto-expiration 🎯 DETECTION CATEGORIES: ━━━━━━━━━━━━━━━━━━━━━━━ - AWS Access Keys & S3 Buckets - Google API Keys & OAuth Tokens - Stripe API Keys (Live & Restricted) - Slack Tokens & Webhooks - Firebase URLs - GitHub Tokens - RSA/PGP/SSH Private Keys - Bearer/Basic Auth Tokens - Sentry DSN - Discord Bot Tokens - Twilio, SendGrid, Mailgun API Keys - And 50+ more patterns 🛡️ PRIVACY COMMITMENT: ━━━━━━━━━━━━━━━━━━━━ PRISM does NOT: - Collect or transmit any user data - Use analytics or telemetry - Track browsing behavior - Make external network requests All scanning is performed 100% locally in your browser. ⚠️ DISCLAIMER: This tool is intended for security research and educational purposes. Always ensure you have proper authorization before scanning websites you don't own. 📖 Open Source: https://github.com/furkanumut/prism
Technical
- Version
- 1.0.0
- Manifest
- V3
- Size
- 1.67MiB
- Min Chrome
- 88
- Languages
- 1
- Featured
- No
Metadata
- ID
- bciagojkpokdapfechejejcpjociamkc
- Developer ID
- u25098209ec028c31f405656a982016bd
- Developer Email
- [email protected]
- Created
- Feb 5, 2026
- Last Updated (Store)
- Feb 5, 2026
- Last Scraped
- Jun 2, 2026
- Website
- —
- Support URL
- https://github.com/furkanumut/prism/issues
- Privacy Policy
- —
Similar extensions
Alternatives to PRISM, ranked by description similarity.
SecuriScan - Web Security Analyzer
Lightweight security scanner that analyzes websites for common vulnerabilities and security misconfigurations
327
AppSec Inspector
Professional security inspection tool. Scan headers, detect secrets, audit auth - all locally, no data collection.
6
Titan Note
Passive recon notebook for authorized security testing. Extracts endpoints, IPs, hostnames and generates reports locally.
7
★ 5.0
Silent Recon
Passive and extensible web security scanner. Detects CORS flaws, missing headers, exposed APIs.
9
CyberPross - Security Scanner
Scan websites for security vulnerabilities, detect technologies, analyze cookies, and check for known CVEs.
23
LPR - Ultimate Recon & Bug Hunting Tool
Stop manually searching source code. Start hunting.
LPR (Live Params & Redirects) is an all-in-one reconnaissance and…
168
★ 5.0
ClawSentinel Guard
Detects hidden prompt injection on webpages. Protects your AI agent from being hijacked by malicious content.
—
Trufflehog-PingPwn
Detects potential exposed secrets on web pages.
1.0K
★ 5.0
Data sourced from the Chrome Web Store · last verified Jun 2, 2026.