Brief
Referrer & URL Secret Leakage Scanner looks for website behavior that attackers commonly abuse before teams notice.
Scanner scope
Reviews public signals related to find reset tokens, invite codes, emails, ids, or secrets in urls that could leak through browser referrers.
Why it matters
Small exposure points can become serious when they reveal tokens, bypass access checks, or let attackers influence user data.
Common issues
Risky public behavior
Missing validation
Exposure that should be reviewed
Scan your website for this risk
Login first, run a preview scan, and see the issue count. Subscribe to reveal the exact findings and AI fixes.
Scan website