The secrets in your prompt, masked before you hit send.
You paste code, logs or a message into ChatGPT — and an API key or card number sneaks in with it. LLM Masker catches it inside your browser and swaps it for a safe placeholder, the instant before the prompt leaves your machine.
Loading the detector catalog…
This demo runs the extension's actual detector catalog — 90+ patterns — right here on the page. Every match becomes [REDACTED_BY_LLM_MASKER], exactly as it does in your chats.
Three things happen, all before the network request
No magic, no cloud. Just a fast pass over your prompt in the moment between you sending and the browser transmitting.
It watches the box
The moment you paste, press Enter or click send, LLM Masker reads the prompt in the page — before the request goes out. Optionally, it masks while you type too.
It swaps in a placeholder
Each secret becomes [REDACTED_BY_LLM_MASKER]. Everything else in your message is left exactly as written.
It sends the safe version
Only the masked prompt leaves your browser. The AI answers with full context; your secret never travels. If a secret somehow can't be masked, the send is blocked instead.
The things people actually paste into AI chats
Every detector is on by default and has its own switch. Each is anchored to a vendor's key shape, a checksum, or an assignment context — so ordinary prose and code sail through untouched.
AI provider API keys
OpenAI, Anthropic, Google (Gemini AQ.Ab… & AIza…), ElevenLabs, Hugging Face, Groq, Perplexity, xAI, OpenRouter, Replicate, Pinecone, LangSmith, Tavily
Cloud credentials
AWS keys & secrets, Google OAuth tokens & client secrets, Azure client secrets & storage keys, DigitalOcean, Alibaba, HashiCorp Vault, Terraform Cloud
Developer platform tokens
GitHub, GitLab, npm, PyPI, Docker Hub, Vercel, Sentry, New Relic, Postman, Grafana, Databricks, Linear, Notion, Figma, Atlassian, Supabase and 10+ more
Payment & commerce keys
Stripe / Clerk secret keys, Stripe webhook secrets, Razorpay, Square, Shopify, PayPal / Braintree
Messaging & webhooks
Slack tokens & webhook URLs, Discord bot tokens & webhooks, Telegram bot tokens, Twilio, SendGrid, Mailgun, Mailchimp, Meta, X
Passwords, keys & connection strings
password=, "api_key": "…", Authorization: Bearer, x-api-key headers, private-key blocks, postgres://user:pass@…
Personal & financial data
Emails, phone numbers, JWTs, credit cards (checksum-verified, spaced or not), IBANs (country + mod-97)
National ID numbers
US SSN, India Aadhaar (checksum-verified) & PAN, UK National Insurance, Canadian SIN. Public IP addresses are an opt-in extra.
Formats are cross-checked against the open-source gitleaks and TruffleHog rulesets. Full list in the user guide; how it stays precise in the security write-up.
Nothing you type is ever uploaded.
A privacy tool you have to trust with your secrets should be the easiest thing to verify. So there's nothing hidden to trust.
On-device only
Detection runs entirely in your browser. Your prompts never touch a cloud — not even ours. There is no scan server to send them to.
No account, ever
Nothing to sign up for, no login, no email collected. Install and it just works. Free users make zero network requests.
Counts, not content
The dashboard records how many secrets were caught and of what kind — never the secrets themselves.
Verify it in one minute
Open DevTools → Network on any AI chat, paste a secret, watch: no requests. The whole privacy claim is falsifiable on the spot. Technical details →
See every mask it made
A local dashboard shows what was caught, when, and where — storing counts only, never the values themselves. Quiet confirmation it's doing its job.
- Catches on paste, on Enter, and on the send button
- Placeholders keep the AI's context intact
- Counts stored locally — export or wipe them any time
- Works on ChatGPT, Claude, Gemini, Copilot, DeepSeek, Perplexity & Google AI Mode
Free to protect. PRO to power up.
Every detector, every site, forever free. PRO adds control for people who want the masker to fit their exact workflow.
- All 90+ detectors, on by default
- Works on all 7 supported AI tools
- Mask on paste, on typing, on send
- Local dashboard, counts & JSON export
- Custom detection rules (text or regex)
- Allowlists — values that must never be masked
- Private audit log — 1,000 events, 12 months, per-site
Cancel any time · 7-day money-back · licence code, no account · full pricing & checkout →
Questions, answered
Does anything I type get uploaded?
Which AI tools does it work with?
What exactly does it detect?
Will the AI still understand my prompt?
[REDACTED_BY_LLM_MASKER] — so the model keeps the surrounding context and knows a value was there; it just never sees the value itself.What if something isn't caught, or is caught wrongly?
Is it really free?
Put the mask on.
Free forever, no account. Your secrets stop at your browser.
Add to ChromeFree on the Chrome Web Store. New here? Read the user guide.