Finds leaked secrets on your Mac — before someone else does.
A menu-bar app that keeps watching your home folder for API keys, plaintext passwords, unprotected SSH keys, malicious scripts, suspicious autostart items and what AI coding assistants leave behind. 100 % local — nothing leaves your Mac.
macOS 15 Sequoia or later · 34 languages · No account needed
Runs in the menu bar, rechecks what changes, and tells you in plain words what to do.
After the first full scan, Leakhound follows file changes via FSEvents and rechecks only what changed. A full scan repeats every 1 to 24 hours.
Passwords, API keys and tokens, SSH keys, malicious scripts, autostart items, credential files and AI traces — each rated low to critical.
Finds secrets in Claude Code, Cursor or Copilot histories, risky agent permissions, and prompt injection hidden in CLAUDE.md or .cursorrules.
Every finding says why it matters and what to do. Wrong file permissions on keys and credential files are fixed with one click.
Findings show where your secrets live, so the dashboard is locked with Touch ID or your login password — and locks again when the screen locks or the Mac sleeps.
A desktop widget shows your security score and open findings. New critical and high findings arrive as a notification right away.
What it finds
Leakhound looks where developers, admins and everyday users actually leave secrets — in project folders, dotfiles, Downloads and on the Desktop.
Password lists that belong in a password manager.
Keys that let anyone act in your name — often at your cost.
.env files with real values for SECRET, TOKEN, PASSWORD or API_KEYThe keys to your servers.
~/.ssh, an open ~/.ssh folderauthorized_keys entriesTypical techniques of macOS malware and stealers.
curl … | sh, decoded Base64 being executed, remote eval, reverse shellssudo, keychain dumpsPrograms that start themselves at every login.
/tmp, /Users/Shared or hidden foldersTools that keep logins in plain text.
.netrc, git credentials, Docker, npm, PostgreSQL, PyPI, GitHub CLI, KubernetesWhat coding assistants saw, ran and stored.
Coding agents read your .env, run shell commands and keep every session on disk — often with secrets in clear text. Leakhound analyses these local files and shows how much each tool stores, which sensitive files it read and what it ran.
sudo, recursive deletes, chmod 777, force pushes, file uploadsbypassPermissions, YOLO mode, all shell commands allowed, hooks that load remote code/tmp, loaded unchecked via npx, or over plain httpWhat to do: rotate the key, then delete the affected history or clean up AI data regularly.
Each finding comes with a severity, the file and line, a masked snippet, a plain-language explanation of the risk and a concrete recommendation. Show it in Finder, fix permissions with one click, or ignore what you know is fine.
Findings in test and example folders are automatically rated low, so dummy keys don't drown out the real ones.
The file permissions allow other users or groups to read the private key.
Recommendation: set a passphrase with ssh-keygen -p and store it in the macOS keychain.
How it works
Leakhound never uploads files, findings or scan results. Secrets are shown masked, even to you.
Pick the places — your home folder, Desktop, Documents, Downloads, iCloud Drive — and the categories to check. Add your own exclusions any time.
Leakhound walks the selected folders in parallel, skipping ~/Library, node_modules, .git, build folders and caches. It takes a few minutes the first time.
From then on, changed files are rechecked within seconds and a full scan runs on your schedule. New critical or high findings trigger a notification.
macOS protects Desktop, Documents, Downloads and iCloud Drive. Without Full Disk Access, macOS asks you once for each folder you selected — nothing else is touched.
Granting Full Disk Access in System Settings covers all folders at once and additionally lets Leakhound check autostart items and some AI data. You can grant or revoke it at any time.
14 days with every feature, no card and no account. After that, one simple yearly price.
Every feature, from the first launch.
USD 29 · CHF 29 · EUR 29 — checkout shows your local currency.
Secure payment by Stripe. Your license key appears right after payment and on every invoice email.
Already subscribed? Manage subscription · Refund on request within 14 days of your first purchase · Terms
No. Every scan runs on your Mac. File contents, findings, paths and scan results never leave the device, and secrets are shown masked in the app. The only network request is the license check: when you activate a license and about once a day afterwards, Leakhound sends the license key, a hashed device identifier and the Mac's name to treeinspired.com. During the trial it makes no network requests at all.
It is optional. Without it, macOS asks separately before Leakhound may read Desktop, Documents, Downloads or iCloud Drive, and you only grant the folders you selected. With Full Disk Access, all folders are covered at once and Leakhound can additionally check autostart items and some AI data.
The trial includes every feature and needs no card and no account. After 14 days you need a Leakhound Pro subscription to keep scanning: 29 per year (USD, CHF or EUR, shown in your local currency at checkout), for up to 3 Macs.
After payment, the confirmation page shows your license key, and it is also printed on every Stripe invoice email. Enter it in Leakhound to activate the Mac.
Anytime in the Stripe customer portal: Manage subscription. The cancellation takes effect at the end of the paid year. Within 14 days of your first purchase you can ask for a refund at info@treeinspired.com.
Yes. A license works on up to 3 Macs at the same time. Deactivate it on one Mac in Leakhound to free the slot for another.
Claude Code, Claude Desktop, Cursor, VS Code / GitHub Copilot, Windsurf / Codeium, OpenAI Codex CLI, ChatGPT Desktop, Gemini CLI, Continue, opencode, Ollama and LM Studio. Leakhound only reads their local files; it never sends anything to an AI service.
No. Leakhound finds exposed secrets and risky configurations using known patterns and flags typical malware techniques in scripts and autostart items. It complements, but does not replace, an antivirus or EDR product or a professional security audit.
34 languages, including English, German, French, Italian, Spanish, Portuguese, Dutch, the Nordic languages, Polish, Czech, Turkish, Russian, Ukrainian, Arabic, Hebrew, Hindi, Japanese, Korean and Chinese. The app follows your macOS language.
A scanner that reads your whole home folder and watches it live does not fit inside the App Store sandbox. Leakhound is distributed directly, signed with treeinspired GmbH's Developer ID and notarized by Apple.
Free for 14 days. No card, no account.
Unzip and move Leakhound to Applications. It lives in your menu bar.