Always seeking to expand monitoring capabilities and bring more visibility to fraud committed on the web, the search for tokens highlights data leaks wherever they may be disguised. This detection can be performed on indexed websites or those located via APIs.
What are Tracking Tokens?
Tracking Tokens, also known in the market as honey tokens or canary tokens, are unique keys that are disguised and hidden in databases. If they are detected by our collectors, the owners of this information can confirm the occurrence of a leak and react quickly, minimizing the impact of LGPD/GDPR.
Monitoring is carried out using an email-based token, meaning the token is a fictional email that, when leaked, provides us with evidence for processing.
Which locations do we monitor, and what are the limitations?
Currently, similar to sensitive data threats, we search the main paste platforms such as GitHub, Pastebin, and Bitbucket, among others. We do not perform scans with Axur Tokens in certain locations, so please be aware: we do not monitor the Deep & Dark Web and non-indexed paste websites.
Accessing the token
To create a new token, simply go to Monitoring Settings > Asset Management.
Click on Add Asset and then select Data Leakage.
In the assets available to be added, click on “Tracking Tokens”.
Finally, the token will be available in an email format for use:
For implementation, please refer to the following process described in Tracking Tokens — use cases. And to get more details about the Data Leakage area: Monitored Assets – Data Leakage.
Important! The email-based token needs to be implemented by your company.
Axur does not perform this installation due to limitations on accessing your systems.
Why should I be concerned?
The General Data Protection Law (LGPD) imposes penalties on companies that have the data they are responsible for exposed in the digital environment. Additional layers of data protection security are stipulated in the law to reduce the number of fines in case of a leak.
If you have any questions, feel free to reach out at [email protected] 😊



