runs entirely in this tab
What does your browser hand
over the moment you open a page?
Click the button below and watch your own local IP, your subnet, and your device get read out in real time. It's the same trick a badly behaved ad script could pull on you without asking, except this time you get to see it happen.
what's actually happening
Degram opens a WebRTC connection to find your local IP, reads whatever your browser will freely give up about your device, then knocks on a couple hundred addresses on your own network to see who answers. All well-known tricks, nothing exotic.
what it needs from you
Just the one click. No account, no download, no camera or
microphone. Everything here runs on fetch,
Image, and RTCPeerConnection, the
same calls any site can already make.
every possible address on your subnet, one square each
Here's what your browser gave up
local ip
subnet
hosts answering
connection type
.local hostname instead of handing it over directly. That's a genuine protection doing its job, and it's why a few fields above might look thin.
Your device, from a stranger's point of view
This is what gets handed over before you've clicked a single thing on any site.
Common local ports
Timed requests only, nothing confirmed outright. A closed or filtered result is a guess based on how long the connection took to give up.
None of this left your browser. Refresh the page and it's like the scan never happened, which is exactly why a throwaway script could run this once, quietly, and you'd never know.