Your secrets are your business, we keep them that way.We just stop the leaks.Learn More

DETECTION RULES

Back to Home

What we block.

Every detection pattern is publicly transparent - applied consistently across both browser and IDE agents. Same engine, same rules, same protection.

15+
AI Platforms + IDE
55+
Detection Patterns
4
Severity Tiers
100%
Pattern Transparency
Pattern Library

Detection patterns by category

All patterns are validated through regex matching, checksum validation (Luhn, Verhoeff), and Shannon entropy analysis. Applied consistently across browser and IDE agents.

Credentials & Secrets

  • API Keys (AWS, GCP, OpenAI, Anthropic, Stripe, HuggingFace)
  • Tokens (JWT, OAuth, Bearer, Session Cookies, Base64 Auth)
  • Google OAuth Client Secrets & GitHub Access Tokens
  • Database URLs & Private Keys (RSA, EC, DSA, OpenSSH)
  • Slack Webhooks & S3/GCS Paths

Financial & Tax Data

  • Credit/Debit Cards (Luhn)
  • Bank Account + IFSC
  • UPI IDs
  • Payment QR Links
  • GSTIN, TIN, Invoice/Tax IDs

Personal & Corporate PII

  • Emails, Phone Numbers (US/IN), Aadhaar (Verhoeff), PAN, GPS
  • Employee/Student IDs, Medical/Insurance numbers
  • Internal .corp URLs, Confluence/Notion/SharePoint links
  • Google Analytics IDs, Browser Fingerprints

File scanning included

Detection isn't limited to typed prompts. LeakSnitch scans uploaded files - spreadsheets, config files, PDFs, Office documents, code archives - for the same sensitive patterns. File content is read locally, scanned in real time, and never leaves your device.

Disclosure & File Parsing

  • Natural language spills ("here is the secret...")
  • High-entropy strings (entropy > 4.5)
  • Parsed secrets from .env, JSON, YAML, and DevOps CI/CD configs
Platform Coverage

Monitored AI Platforms

ChatGPTClaudePerplexityGeminiDeepSeekKimiGrokMicrosoft CopilotMeta AIPiMistralGroqQwenMidjourneyJasperCopy.aiWritesonicHugging FaceCharacter.aiPhindYou.comPoeVS Code (IDE Agent)
Scoring System

How detection severity works

Every detection is scored on a 0-100 scale. Context signals boost confidence, questions reduce it.

CriticalScore 90+

Definitive secret exposure - passwords, API keys, tokens, credentials

HighScore 80-89

Strong signal - private keys, database URIs, OAuth tokens

MediumScore 50-79

Potential sensitive data - phone numbers, addresses, internal URLs

LowScore < 50

Contextual signals - generic data patterns with lower confidence

Scoring modifiers

+15Context signal keyword nearby
+8Generic sensitive context nearby
-10Question mark at end (disclosure context)
-30Question mark at end (default)
-20Value shorter than 6 characters
+10Email with email-specific context
Get started

Try our platform today!

Real-time blocking across 25+ AI platforms
55+ detection patterns with entropy validation
Enterprise dashboard with compliance reports
Free forever for individuals - upgrade when you scale
Install in 60 secondsZero Trust - Data never leavesNo credit card required