Everything, explained.
Setup in 60 seconds
- Install from the Chrome Web Store (works on Chrome, Edge, Brave, Arc — anything Chromium).
- Activate it: paste the Pro code from your purchase email into popup → ⚙ Manage rules & license.
- Reload any tabs that were already open — Chrome only injects extensions into pages loaded after install. Then open any page with an email address on it and watch it get covered.
Auto Blur needs a Pro code to run — grab a plan on the pricing page (from $1.99/mo, 7-day money-back guarantee), then paste the code from your email into the extension: popup → ⚙ Manage rules & license → Activate. Installed before the paid launch? You keep everything free, forever — nothing to do.
What gets detected
Everything is included in every plan. The core detectors run on every page automatically: email addresses, credit card numbers (Luhn checksum-validated across all major networks, so false alarms are rare), phone numbers (North-American and international +CC formats), API keys with known prefixes (Stripe, AWS, GitHub), JWT tokens, private-key blocks, labelled secrets (“password: …”), bearer tokens, GitHub tokens, and unlabelled high-entropy secrets.
On top of that: SSN, IBAN (checksum-validated), crypto wallet addresses, street addresses, dates of birth, the India pack (Aadhaar, PAN, UPI IDs, IFSC codes), and Money mode. It can also scan inside input fields — settings pages and admin consoles are where secrets actually sit.
Detection is context-aware where it needs to be: a 9-digit number alone is not an SSN, but one next to the label “SSN” is. That discipline keeps false positives rare.
Keyboard shortcuts
- Alt+Shift+B — Panic Mode: blur the entire page instantly; press again to clear.
- Alt+Shift+E — Blur mode: click elements to blur or unblur them.
- Alt+Shift+A — Blur area: drag rectangles over anything.
- Hold Alt (⌥) — peek through the blur under your cursor while held.
- Click a blur — reveal that one item for 3 seconds.
- Right-click a selection → “Blur selection” — hide any text; it stays hidden on every future visit.
On a Mac, Alt is ⌥ Option. Shortcuts are remappable at chrome://extensions/shortcuts. Turning Auto Blur off for one site lives in the popup — two clicks, with 15m / 1h / today presets.
Money mode
One toggle hides every currency amount on the page — $, ₹, €, £, ¥ and plain formatted figures next to money words like “revenue” or “balance”. Built for the most common paid scenario there is: demoing a dashboard without demoing your MRR, showing a bank portal without showing the balance.
Turn it on per-site from the popup (💰 Money mode) — it stays on for that site until you turn it off. It stacks with all other detection: amounts are just another kind, so click-to-peek and hold-Alt work as usual.
Smart Auto-Blur
Three triggers flip protection on exactly when exposure risk spikes:
- Screen share — a browser-based share (Meet, browser Zoom, Loom web) starts → every tab blurs.
- Tab switch — background tabs are blurred while this trigger is enabled; verify protection before presenting.
- Idle — step away, blur turns on; come back, it lifts.
Honest limit: a share started from a native app (desktop Zoom sharing the whole screen) is invisible to any browser extension — hit Alt+Shift+B before those. If a share ends abruptly, stale share sessions expire after a short liveness timeout. Browser scheduling can delay cleanup.
Element picker & blur boxes
Click-to-blur: pick any element on any page — an avatar, a table column, a sidebar — and it stays blurred on every future visit. The picker prefers stable attributes (ids, data attributes, labels) over brittle positional selectors, warns when a selection would match many elements, and re-finds elements after the page re-renders.
Blur boxes: draw a rectangle over anything — maps, charts, canvases where there is no element to pick. Boxes anchor to the nearest stable element rather than fixed pixel coordinates, so they follow content when the page scrolls, reflows or resizes.
Site packs: one-click rule bundles for Gmail, Stripe and Intercom that pre-blur the fields people demo most.
Custom rules & site policy
Add your own regex rules for anything we don’t detect — internal ticket IDs, customer codes, project names. Rules can be global or scoped to a site and pathname. Test an example before saving. The RE2-compatible engine avoids backtracking; backreferences, lookarounds and patterns that match empty input are not supported. Existing unsupported rules are reported in the popup protection check and need to be rewritten.
Per-site policy lets you pause Auto Blur on a site for 15 minutes, an hour, until tomorrow, or permanently — from the popup, two clicks.
Peeking & the allowlist
Click any blur to peek for 3 seconds. Presentation lock disables temporary reveals. Choose “always show” and that exact value joins your site-scoped allowlist. Hold Shift when choosing it to allow the value on all sites. Entries contain a SHA-256 hash, a short display hint and scope information. Review and remove allowlist entries any time in Options → Allowlist.
Protection controls & backups
Options provides detector-category switches with global and per-site settings. Presentation lock conceals initial page loading until scanning finishes and disables click, Alt and focus reveals. Dynamic page updates still need checking. Solid masks offer opaque visual coverage; the underlying page data remains intact.
Use the popup protection check to review current protection, rejected rules and missing anchors. Save named profiles or export/import settings from Options. Backups exclude license codes but can include selected-text rules and site information; keep those files private. Profiles are stored on the current device.
Activating Pro
- Buy on the pricing page. Your code appears on the success page and lands in your email.
- Open the extension popup → ⚙ Manage rules & license.
- Paste the code (starts with
AB-) → Activate.
Activation is verified inside the extension — it works offline. Subscriptions refresh their code automatically in the background; if a device was off for weeks, the Restore page refreshes any code instantly.
Troubleshooting
- Nothing blurs on a page I had open — reload the tab; Chrome injects extensions only into pages loaded after install.
- A site looks broken with blur on — pause Auto Blur for that site from the popup and tell us; site-specific fixes ship fast.
- Something sensitive isn’t caught — add a custom rule for it, and report the miss so we can evaluate improvements. Detection does not learn automatically.
- My Pro code says expired — paste it into the Restore page; an active purchase always refreshes.
- Sync hit its limit — very large rule sets can exceed the browser’s sync quota; the options page shows an error. The failed change is not saved; export a backup and remove unused rules before retrying.