AI Developer Tools

Confessor

A forensic tool that reconstructs AI coding agent sessions from local logs to detect sensitive file reads and data exfiltration attempts.

Confessor logo

Confessor

Visit website

What is Confessor?

Confessor is an open-source command-line tool that audits AI coding agents by replaying their local session logs. It identifies every file the agent opened, every secret that entered its context, and flags exposure paths where sensitive data was read followed by a network call. It also scans chat exports from ChatGPT, Claude, and Gemini for secret leakage.

Confessor vs Similar AI Tools

Pricing ModelFreeFreeCustom PricingFree, Paid
Free Credits
Key Features
  • Agent session reconstruction from Claude Code JSONL logs
  • Detection of sensitive files opened (e.g., .env, SSH keys, browser passwords)
  • Secret detection in agent context using 30+ pattern rules
  • GitHub Pages hosting
  • Jekyll integration
  • Markdown content support
  • Workload monitoring and anomaly detection
  • Slow query identification and optimization
  • Natural language querying to SQL translation
  • Scans skills and MCP servers against ATR rules before loading
  • Real-time runtime protection against prompt injection and hijacks
  • Signed audit-ready evidence for compliance (EU AI Act, NYDFS, DORA)
Pros
  • Zero network calls ensures complete privacy
  • No dependencies required to run
  • Free hosting with custom domain support
  • Easy setup via Git
  • Quick one-line installation and setup in 15 minutes
  • Self-hosted ensures data stays within your infrastructure
  • Open source with MIT license
  • Real-time detection and prevention
Cons
  • Currently only supports Claude Code log format
  • Detection is rule-based, may miss novel patterns
  • Limited to static content
  • No server-side processing
  • Requires self-hosting and VPC setup
  • No free tier or trial mentioned
  • Enterprise features require paid tiers
  • Setup may require technical expertise
Best For
  • Developers using Claude Code or similar AI coding agents
  • Security auditors reviewing AI agent behavior
  • Developers
  • Open source projects
  • Database administrators
  • Data engineers
  • Developers building and deploying AI agents
  • Enterprises needing audit-ready AI security

How to use Confessor?

  1. 1Ensure Node.js >= 18.17 is installed.
  2. 2Run `npx confessor` to analyze local Claude Code logs (automatically finds `~/.claude/projects`).
  3. 3Optionally, provide a path to a chat export ZIP file (e.g., `npx confessor ~/Downloads/chatgpt-export.zip`) to scan chat histories.
  4. 4View the generated `confessor-report.html` in your browser.

Confessor Key Features

  • Agent session reconstruction from Claude Code JSONL logs
  • Detection of sensitive files opened (e.g., .env, SSH keys, browser passwords)
  • Secret detection in agent context using 30+ pattern rules
  • Exposure path identification (sensitive read followed by network call)
  • Zero network calls and zero runtime dependencies
  • Chat history scanning for ChatGPT, Claude, and Gemini exports
  • Structural redaction of secrets in output
  • Offline HTML report with CSP blocking external loads

Confessor Use Cases

  • Audit what an AI coding agent accessed during a task
  • Detect potential data exfiltration by AI agents
  • Compliance review of AI agent interactions with sensitive files
  • Personal privacy audit of chat history with AI services

Confessor Pricing & Free Credits

Confessor currently operates on a Free model.

This tool is completely free to use

Open Source

Free

MIT licensed, freely available on GitHub

Confessor Pros & Cons

Pros

  • Zero network calls ensures complete privacy
  • No dependencies required to run
  • Detects exposure paths that other tools miss
  • Works offline on local logs only

Cons

  • Currently only supports Claude Code log format
  • Detection is rule-based, may miss novel patterns
  • Retrospective only, not real-time monitoring

What is Confessor best for?

  • Developers using Claude Code or similar AI coding agents
  • Security auditors reviewing AI agent behavior
  • Privacy-conscious users wanting to inspect chat exports

Confessor FAQ

Top free alternatives to Confessor

B

Personal GitHub Pages site by Basert, currently displaying default welcome content and instructions for using GitHub Pages with Jekyll.

Free
Termaxa logo

A cooperative gate for shell commands that AI agents run, providing previews, backups, policy enforcement, and audit for tools like Claude Code and Cursor.

Free
Agentcard logo

Agentcard provides agent-friendly card issuing and payment infrastructure for AI agents, enabling 5-minute setup and autonomous purchases.

Free
Oodle AI logo

Oodle AI provides agent observability with fast trace search, S3-based storage, and out-of-the-box insights to detect silent failures in AI agents.

Free
Jacquard logo

Jacquard is a small programming language designed for running, reviewing, and trusting programs written by machine-learning models and reviewed by people.

Free
Perfai Security logo

Autonomous security testing platform that finds and fixes access control vulnerabilities in live AI-built apps.

Free
Octolens logo

AI-powered social listening tool that monitors Reddit, X, LinkedIn, and 10+ other platforms, filters mentions with AI, and delivers them to your stack via API, Slack, or webhooks.

Free
Opper AI logo

A unified AI gateway providing access to 300+ leading models through one EU-hosted, GDPR-compliant API with an OpenAI SDK-compatible interface.

Free

Best alternatives AI Tools to Confessor

B

Personal GitHub Pages site by Basert, currently displaying default welcome content and instructions for using GitHub Pages with Jekyll.

Free
DeepSQL logo

DeepSQL is an AI DBA that monitors workloads, optimizes slow queries, and cuts database costs via a self-hosted agent with MCP and Slack integration.

Panguard AI logo

Open-source platform for real-time AI agent security, auditing skills and runtime with community-driven threat rules.

OpenSEO logo

OpenSEO is an open source SEO platform that integrates with AI agents via MCP to provide real SEO data for keyword research, competitor analysis, backlinks, and more.

SureWire Beta logo

SureWire Beta is an AI agent validation platform that helps ensure your AI agents are safe and reliable through comprehensive testing.

FlexInference logo

A deadline-aware LLM router that reduces AI inference costs by automatically finding cheaper service tiers within a user-specified time window.

Shikigami logo

Run multiple AI coding agents in parallel on isolated git worktrees with a full editor and built-in developer tools.

LoopGain logo

An open-source cost controller for AI agent loops that stops loops when converged and rolls back before degradation.