This project is open for personal research and educational use ONLY.
Any forks, derivatives, or usage must credit the original author:
I retain full moral rights over the core detection logic and research methodology.
- Detects classic iframe Steam phishing popups
- Detects next-generation BitB scam windows
- Blocks tapszone.com, jahreedition.com and clones
- Detects Steam API key scam pages
- No false positives on real steamcommunity.com
- Fully compatible with any Chromium-based browser
If you want to test this protection on your own browser, I’ve published a simple personal demo version of my extension.
This is not a commercial product, it’s a personal research project for the community.
You can download and load it manually as an unpacked Chrome extension.
👉 🛡️ Download Steam BitB Scam Detector (GitHub)
- Download the repository ZIP or clone the repo
- Open
chrome://extensions/in Chrome - Enable Developer Mode
- Click Load Unpacked
- Select the folder with the extension files
- Visit tapszone.com or any known Steam BitB kit to test
- The extension will block the scam window and alert you instantly
✅ It runs quietly in the background
✅ It does not modify pages or track data
✅ It works on any Chromium-based browser (Chrome, Brave, Edge, etc.)
This tool is for educational purposes.
I accept no liability if attackers change their techniques after this publication.
Always use multiple layers of security and avoid logging into Steam via third-party websites.
See LICENSE file. Attribution is mandatory for any reuse, fork, derivative, or publication of this work.