nowfound

Alternatives

Products that do what Bounce does

Hit any API from the frontend without exposing your keys

  1. 1
    Descope356

    Drag-and-drop authentication for your app

    2023

  2. 2

    Scrape the web at scale without getting blocked

    2021

  3. 3IV

    Hey Everyone! I’ve recently been working on an open-source proxy server to help front end applications securely access third party APIs that require confidential API keys without the need to create your own backend. I would love to get some feedback and hear what you think!

    2024 · github.com

  4. 4

    Give AI access to 6754+ APIs with zero credentials exposed

    Feb 2026 · keychains.dev

  5. 5LF
  6. 6

    Get HTML from any page with a simple API call

    2023

  7. 7
    Passkeyd160

    Passkey auth, minimalistic and self hosted

    2024

  8. 8

    Patch authentication into your Next.js app with one command

    Jan 2026

  9. 9

    Scrape the web at scale without getting blocked

    2023

  10. 10
    Latchkey122

    Credential layer for local AI agents

    Mar 2026 · github.com

  11. 11WP
  12. 12PD
  13. 13

    Request & share passwords securely and with 0 errors

    2021

  14. 14OP

    I, like Andrej Karpathy, became super frustrated by how annoying it was to deploy projects that were previously an absolute joy to make with Claude Code. That is why I made open-passkey, an MIT licensed passkey repo with support for 33 languages and frameworks (examples included) that makes adding simple secure auth to a project easy. We are also releasing gateway (https://gateway.locke.id) a "backendless" hosted auth server that frontend apps can consume for free so that you can ship a React or Angular app using a CDN like Netlify without needing to configure a server at all. We…

    Apr 2026 · github.com

  15. 15EP

    Hey HN, We made an Envoy Proxy playground [0] so we could test out our Envoy configs directly in the browser. This is based on Julia's work with Nginx Playround. [1] We forked that repo and added more Envoy to it. [2] Check it out! [0] - Envoy is a popular programmable proxy similar to Nginx or HAProxy that is popular with cloud-native setups: https://www.envoyproxy.io [1] - https://nginx-playground.wizardzines.com [2] - https://github.com/apoxy-dev/envoy-playground

    2023 · envoy-playground.apoxy.dev

  16. 16

    Sell your API, with just a link.

    2021

  17. 17IR

    Sharing an internal tool that accelerated my development work 10-fold, especially with API debugging. Thought fellow developers here might find it useful. As a developer, I often have trouble reproducing errors at the client end. https://intercept.rest lets me debug and monitor API requests and responses. It is similar to the Network tab in Chrome Developer Tools but works for any API: mobile apps, webhooks, frontend etc. After I shared it with a close circle of friends, they found it incredibly useful and even found new use cases, I never imagined. Been a long time lurker here and…

    2018

  18. 18KD

    I built this after seeing multiple teams accidentally ship API keys in their frontend code. The problem: Modern web development moves fast. You're vibe-coding, shipping features, and suddenly your AWS keys are sitting in a tag visible to anyone who opens DevTools. I've personally witnessed this happen to at least 3-4 production apps in the past year alone. KeyLeak Detector runs through your site (headless browser + network interception) and checks for 50+ types of leaked secrets: AWS/Google keys, Stripe tokens, database connection strings, LLM API keys (OpenAI, Claude, etc.), JWT…

    Nov 2025 · github.com

  19. 19
    wsgrok7

    Expose. Code/Vibe. Repeat. Public URLs for your local.

    Jan 2026 · wsgrok.com

  20. 20IP

    Hey HN! I made a service to share passwords easy and secure but never promoted it. It's called instapass.io I noticed that people besides my friends and clients actually started to use, so maybe it will be helpful for you too! You share one-time self-destruct message using one time links and I won't even be able to see what you wrote. How does it work? When you generate a message the client-side makes a random password and use that to encrypt the message. The password is appended as an anchor tag which all modern browsers never send to the server. This way, I don't even know what you shared.…

    2019

  21. 21OA

    Hey HN, we’ve been working on a way to simplify authentication with third-party APIs. This started because my co-founder andreterron (https://news.ycombinator.com/user?id=andreterron) and I both built personal dashboards to track different health and productivity metrics, but it’s such an annoying chore to integrate with new APIs. First you read their docs to learn their authentication method, then build and deploy a custom server to receive OAuth callback requests or deal with CORS, register an app with them, then finally you can send the first request to their API. After the…

    2023 · oneapikey.com

  22. 22DE
  23. 23

    Catch exposed API keys and secrets while you browse

    Jul 2026

  24. 24DB

    Google’s recent announcement of a proposed ‘Device Bound Session Credentials’ feature[1] for Chrome reminded me of a project we worked on last year at my company. We focus on fraud prevention at signup and login (preventing multi-accounting and account theft), but some customers were concerned about post-login security and asked us to add a session hijacking prevention feature to our fraud prevention API. In the end, we decided to just implement a solution in Javascript. We call it session-lock, and it can be used today across all browsers[2] and, theoretically, native mobile apps. For a…

    2024 · session-lock.keyri.com

Ranked by how close each launch is in meaning, then by votes. Refine with a description →