Zero-dep CLI that probes a live URL for accidentally-served secret artifacts (.env, .git/, .js.map source maps, .DS_Store, backups) and CONFIRMS each hit by fetching the bytes.
-
Updated
Jun 21, 2026 - JavaScript
Zero-dep CLI that probes a live URL for accidentally-served secret artifacts (.env, .git/, .js.map source maps, .DS_Store, backups) and CONFIRMS each hit by fetching the bytes.
🔍 Passive web exposure scanner — finds publicly exposed files, backups, configs, secrets, and sensitive documents on websites you own. Python CLI with Markdown/JSON reports.
TRACE 1.0 — Total Risk Assessment & Computed Exposure | Windows Forensic Artifact Scanner | 100 artifacts | Exposure scoring
Add a description, image, and links to the exposure-scanner topic page so that developers can more easily learn about it.
To associate your repository with the exposure-scanner topic, visit your repo's landing page and select "manage topics."