Setup guide
From install to first pivot in five minutes
Four steps: install the extension, activate your key, add your source API keys, and run your first IOC pivot.
- 1
Install from the Chrome Web Store
Deep Detect is a Manifest V3 Chrome extension and runs in Chrome 114 and later. Add it from the Chrome Web Store, then pin it so the action icon is always visible.
Add to Chrome - 2
Activate your license key
Every install starts with a 30-day full-feature trial — no key needed. When you're ready to keep going, copy your license key from the dashboard and paste it into the extension's Settings → License field. The extension validates the key directly against the licensing service — nothing about your investigations is sent along with it.
Don't have a key yet? Create an account and pick a plan on the pricing page.
- 3
Add your Tier 1 source API keys
Deep Detect queries each source directly from your browser using your own API keys — there is no shared proxy and no rate-limit pooling across users. Add a key for each source you want to enable under Settings → API Keys. Every source below has a free tier that's enough to get started.
Source Applies to Where to get a key VirusTotal All IOC types virustotal.com AbuseIPDB IP addresses abuseipdb.com Shodan IP addresses shodan.io GreyNoise IP addresses greynoise.io ipinfo IP addresses ipinfo.io GreyNoise's community endpoint works without a key (a key only raises your rate limit). Every key is stored in chrome.storage.local on your own device and never leaves the browser.
- 4
Run your first pivot
Select any IOC in a page — an IP, domain, URL, or file hash — then right-click and choose Deep Detect. Defanged IOCs like
1[.]2[.]3[.]4orhxxps://evil[.]comare refanged automatically.- →Triage opens instantly with a single verdict — HIGH, MEDIUM, LOW, or UNKNOWN — using worst-verdict-wins, so one malicious high-confidence hit sets the verdict on its own.
- →Click Deep Investigation for the full per-source breakdown and Tier 2 verification links.
- →Tier 2 sources open one tab only when you deliberately click Verify on [platform] — Deep Detect never opens tabs on its own.
Still stuck?
If a source won't validate or a pivot returns an unexpected result, we're happy to help.
Contact support