cRaCked
cRaCked assists with Torn’s cracking activity by analysing revealed characters, eliminated guesses, password patterns, positional frequencies, and known password dictionaries. It recommends the position and character currently estimated to have the highest probability of success.
The script cannot guarantee a correct guess. Displayed percentages are model estimates that improve as more characters are revealed and observations are collected.
Download and install
Install the latest verified release from Greasy Fork:
A userscript manager such as Tampermonkey or Violentmonkey is required. Greasy Fork will provide updates through your userscript manager.
Community crack pool and network disclosure
cRaCked uses the community crack pool hosted at:
https://pp-api.sokin.xyz/torn-crack-pool/
Upload disclosure: When “Upload passwords I crack to the community pool” is enabled, successfully completed cracking passwords are automatically submitted to the shared pool. This allows passwords observed by one player to improve future suggestions for other users.
Uploads contain the completed cracking password and information required by the pool to validate and count the submission. The service may process hashed network identifiers, such as an IP-address hash and user-agent hash, for duplicate detection, abuse prevention, and determining whether a password has been independently observed.
cRaCked does not intentionally upload your Torn password, Torn API key, authentication cookies, personal messages, or account login credentials.
How to disable community uploads
- Open cRaCked Settings.
- Find the Community pool section.
- Uncheck “Upload passwords I crack to the community pool.”
Disabling uploads keeps newly cracked passwords local to your browser. You will continue receiving the shared community dictionary unless its download is separately disabled or blocked.
Dictionary downloads
The script downloads its filtered base password dictionary and community-pool updates from pp-api.sokin.xyz. The base dictionary contains uppercase A–Z and numeric 0–9 candidates between 4 and 10 characters.
Dictionary data is cached locally in IndexedDB to avoid downloading and rebuilding it for every crack. The cache can be cleared from cRaCked Settings.
Local observations and telemetry
Guess outcomes, completed cracks, exclusions, model observations, and calibration information may be stored locally in your browser. These observations improve later recommendations and allow accuracy evaluation.
Local observations are not the same as community-pool uploads. Resetting observations removes learned local model data, while clearing the wordlist cache removes downloaded dictionary data.
Important limitations
- cRaCked is an assistance tool, not an automatic guarantee.
- Incorrect recommendations can consume cracking attempts.
- Brute-force reveals can improve the model’s understanding of the current password, even when no manually typeable slots remain.
- Dictionary matches and displayed probabilities should be treated as estimates.
- Torn page changes may temporarily affect detection or recommendations.
Join the cRaCked community
You are visitor:
Tried cRaCked? Leave a comment, share your results, and spread the word!
Use of this script remains at the user’s own discretion. cRaCked is an independent community project and is not affiliated with or endorsed by Torn.