Local Multi-File Secret-Pattern Scanner

Scan selected local UTF-8 files for documented credential patterns or literal terms with value-free findings.

Files stay on your device No sign-up Free to use
How this works

The tool runs in this browser. Your file or text is not uploaded to UseFreeTools. Check this tool's limits for anything it may save on your device.

Privacy details

Scan selected files controls

Drop your CSV files here

or choose them from your device

Up to 100 UTF-8 text files, 1 MiB each and 10 MiB in total. Archives, images, spreadsheets and other binary files are refused rather than guessed at.

    Optional, up to 50 literal terms of 200 characters each. Matching is literal and a term is never written into the result.

    Processed in your browser. Your inputs stay on this device.

    Showing a generated example. Generate again for a new result.

    How to use Local Multi-File Secret-Pattern Scanner

    1. Supply the text files to scan and extra literal terms, one per line using the supported input described beside the controls.
    2. Review the selected options and the declared scope, then run the local secret pattern scanner.
    3. Read the result and unresolved findings before downloading or sharing a report. The original input is not changed.

    Example: Local Multi-File Secret-Pattern Scanner

    Review selected text files for documented credential patterns and selected user terms. This example uses synthetic public data and the named local fixture files.

    You add
    Look for PEM private key blocks: true Look for AWS access key IDs: true Look for GitHub tokens: true Look for Slack tokens: true Extra literal terms, one per line: internal-only Text files to scan: synthetic.txt contains "Public demo\nAKIAABCDEFGHIJKLMNOP\n-----BEGIN PRIVATE KEY-----\n"
    You get
    2 matches across 1 of 1 file. synthetic.txt | PEM private key block | 3 synthetic.txt | AWS access key ID | 2

    Options

    Text files
    Select files within the shown count and byte limits. Binary data, archives and OCR need another workflow.
    Literal terms
    Optional entered terms are matched literally and are omitted from results. They do not become regular expressions.

    Supported inputs and limits

    Selected UTF-8 text and documented patterns only. No archives, binary/OCR scan, complete detection, breach search, revocation check or source snippets in exports.

    Where your input is processed

    This tool processes your input in this browser. Your text and files are not uploaded to UseFreeTools. Check this tool's limits for anything it may save on your device.

    A finding is a review location

    The report identifies a file, line and pattern class without displaying the matched value or surrounding source. Fixed patterns can produce false positives, while unlisted or altered secrets can be missed. Review findings in your own files and do not treat a clear report as proof that a collection contains no secrets.

    Questions about Local Multi-File Secret-Pattern Scanner

    Are secret values printed?

    No. Findings omit values and source snippets.

    Does zero mean no secrets exist?

    No. It means no supported pattern or entered literal term was found in the selected supported text.

    Does it test whether a token works?

    No. It makes no authentication or network requests.

    Project manager: Tony Hines · Content updated 4 October 2026 · Report a problem