{"repo":"mouteee/jsrip","free":true,"listed":false,"github":"https://github.com/mouteee/jsrip","clone":"git clone https://github.com/mouteee/jsrip.git","description":"Crawl and analyze JavaScript for secrets, tokens, and API endpoints. A powerful bug bounty tool for automated JS analysis.","language":"Python","stars":21,"topics":["automation","bugbounty","crawler","hacking","infosec","javascript","osint","pentesting","playwright","recon"],"license":"CC-BY-SA-4.0","category":"security-tools","readme_excerpt":"jsrip JavaScript ripper for the offensive web. Crawls targets, rips their JS, and tears it apart looking for secrets, endpoints, and things developers forgot to hide. Built for bug bounty hunters and pentesters who are tired of doing this by hand. --- What it does - Rips secrets -- API keys, tokens, passwords, credentials, hardcoded connection strings, env fallbacks, and 1600+ patterns across every major service - Maps endpoints -- API routes, internal paths, hidden URLs, GraphQL endpoints, fetch/XHR targets - Smart analysis -- Shannon entropy scoring, variable assignment detection, config object extraction, environment leak detection, DOM storage analysis - Multi-domain crawling -- Feed it a list of subdomains, it scopes them all - Exports clean reports -- Interactive HTML dashboard, JSON, Markdown, CSV --- Quick start --- Usage --- Options Flag What it does Default ------ ------------- --------- -u URL Single target -- -l FILE Target list -- -o DIR Output directory auto-timestamped -f FORMAT Report format(s): html json md csv json --depth N Crawl depth 2 --max-pages N Page limit 500 --include-external Include off-scope URLs in results off --show-browser Visible browser window headless --headers FILE Custom headers (JSON) -- --cookies FILE Session cookies (JSON) -- --user-agent STR Custom UA string jsrip/1.0 -v Verbose output off --- Output --- How it works Crawling Playwright drives a real Chromium instance. It follows links, intercepts network responses, extracts inline sc","default_branch":null,"files":null,"tree":[],"storefront":"/r/mouteee","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/mouteee/jsrip/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}