LiveSafe browsing for agentsRuns in your browser

Fingerprint check

How unusual, and how headless, does your browser look?

CreepJS, an open-source fingerprinting suite, scores the browser for headless and stealth traits and lists the details that make it recognisable.

Updated

The CreepJS headless panel showing 31% like headless, 0% headless and 0% stealth

What it measures

Headless score

The share of tests that only a headless browser fails.

Stealth score

Signs that a browser is hiding or faking its properties, as stealth plugins do.

Like headless

Traits headless browsers often share, many of which ordinary browsers have too.

Fingerprint

Time zone, language, fonts, graphics, audio and other details that together identify a browser.

How to use it

  1. Open the check and wait about thirty seconds while the tests finish (the WebRTC section shows as blocked on purpose).
  2. Find the Headless panel: headless, stealth and like-headless scores.
  3. Scroll for the full fingerprint. It is computed on your screen only.
Open the lab

Good to know

  • CreepJS runs unmodified, in its own design. Its WebRTC test would contact Google's servers and reveal your IP address, and it would install a service worker, so Hopper Labs switches both off: those two sections show as blocked.
  • Nothing is sent anywhere and nothing is installed.
  • Scores describe these tests only, not any website's own detection.

What we found

Every setup we ran, including plain Chrome with nothing automated.

Measured
All setups tested
0% headless · 0% stealth
No headless or stealth traits in any mode.
All setups tested
31% like headless
5 of 16 traits, identical in plain Chrome: normal for desktop Chrome on a Mac in light mode.

Method: Each setup opened the check and read the Headless panel after the tests finished. Re-measured with the WebRTC and service-worker guard in place; scores unchanged.

How-to

Every browser gives away small details (time zone, fonts, graphics card, language) that together can recognise it across websites. The fingerprint check runs CreepJS, a well-known open-source test suite, so you can see those details and how "headless" (automated) your browser looks.

For you

  1. Open the Fingerprint check and wait about thirty seconds.
  2. Find the Headless panel:
    • headless: tests only a headless (automated) browser fails. 0% is what a normal browser shows.
    • stealth: signs of a browser hiding or faking its properties. 0% is normal.
    • like headless: traits headless browsers share with many ordinary browsers. On a Mac in light mode, 31% is normal.
  3. Scroll for the full fingerprint.

Privacy

CreepJS would normally contact Google's servers for its WebRTC test (which reveals your IP address) and install a service worker. Hopper Labs switches both off, so nothing leaves your browser and nothing is installed; those two sections show as blocked.

For your AI agent

Open https://lab.hopperlabs.ai/botlab/fingerprint/index.html, wait thirty seconds, and tell me the headless, stealth and like-headless scores.

Check that it's private

This lab runs entirely in your browser and sends nothing anywhere. You don't have to take our word for it:

  1. The browser enforces it. This site's security policy only lets pages talk to lab.hopperlabs.ai. This command shows connect-src 'self':curl -sI https://lab.hopperlabs.ai/botlab/fingerprint/index.html | grep -i content-security-policy
  2. Every file is listed with its fingerprint and source commit in privacy.json, so you or your agent can compare them and read the code.
  3. Once the lab has loaded, turn off Wi-Fi: it keeps working, because it needs nothing from the network.

This page sends nothing anywhere. If an AI agent or browser extension is reading your screen, it can see what's shown here.

More labs

All labs