Catto Crawler

Discord Webhook Security Scanner

Active & Protecting

What We Do

Catto Crawler is a lightweight security bot that scans publicly accessible websites for exposed Discord webhook URLs.

Our Mission

To help prevent misuse and data leaks by detecting exposed webhooks and notifying website owners before malicious actors can exploit them.

If You See This Bot

Don't worry! Our bot is not malicious. It's performing routine security checks to help protect your Discord community.

Scan Frequency

We perform lightweight, non-intrusive scans respecting rate limits to minimize server impact.

Technical Information

User Agent

Mozilla/5.0 (compatible; CattoBot/1.0; +https://catto.systems)

Automated Alerts

Real-time notifications

Scan Types

HTML, JS, API endpoints

What We Scan For

discord.com/api/webhooks/
discordapp.com/api/webhooks/
JavaScript variables containing webhooks
Configuration files and API responses

Security Recommendation

If you've received an alert about exposed webhooks, please take immediate action:

  • Regenerate the webhook URL in Discord
  • Remove the webhook from public-facing code
  • Use environment variables for sensitive data
  • Review your deployment process

Need Help or Have Questions?

[email protected] | Response within 48 hours
Last updated: May 2025
Built with ❤️