Security
BreachLense analyzes supplied evidence to help defenders understand exposure and coordinate response.
Evidence handling
Archives are inspected under limits for file count, decompressed size, compression ratio, and parser input. The application never executes archive contents. Nested archives and executable artifacts are skipped. Screenshots are validated and re-encoded.
Access and encryption
Per-case encryption keys protect recovered secrets. Keys are wrapped by a master key outside the database and public document root. Secure Redis sessions, CSRF protection, authorization checks, and audited reveal endpoints protect access.
Reporting a security concern
Contact your organization’s BreachLense administrator through your established internal security channel. Include the request ID for an application error, and avoid sending recovered secrets.