JavaScript obfuscator
Server-side AST transforms, encoded string arrays and bounded control-flow changes.
StarCrypt is the Starlight Solutions obfuscator. Protection runs on our servers, with no external obfuscation API receiving your source.
Output and compatibility
Choose the language tab, submit your source to the server and download the transformed output. StarCrypt checks source and output syntax. Always run the result with your project dependencies and tests.
Download extension: .js. Maximum source size: 100,000 characters. A syntax check is not a proof of runtime equivalence.
Questions and answers
How do I obfuscate JavaScript code?
Choose the language tab, submit your source to the server and download the transformed output. StarCrypt checks source and output syntax. Always run the result with your project dependencies and tests.
Does my code run in the browser during obfuscation?
No. The browser uploads source over HTTPS to StarCrypt servers. Engines and service credentials remain on the backend. Source must be readable during server processing.
Will protected code run at the same speed?
Runtime cost depends on the source and selected transforms. Lua SupaCrypt is particularly expensive because it nests three VMs. Benchmark realistic workloads before publishing.
Can obfuscation hide API keys or stop all reverse engineering?
No. Keep credentials and sensitive authorization logic on your server. Code distributed to a client remains inspectable.
Full engine compatibility · API options and limits