Inject
Buyer runs your generated loader. Nothing is added to the database on first inject.
Create a project, drop people into the database by injector name and HWID. The loader checks the machine — leaked keys don't exist.
Buyer runs your generated loader. Nothing is added to the database on first inject.
The loader copies the machine HWID to clipboard — they paste it to bind after purchase.
Every launch hits our API. Unknown or banned HWID = NO SUB. Script never loads.
If the slot is valid, the original script runs. Kick from the panel and they drop on next check.
Yes. HookGuard is a modern, high-speed Luarmor alternative built for Roblox developers. It delivers HWID whitelist licensing, cloud Luau obfuscation, anti-dump canary traps, and custom UI loaders without brittle key systems.
Keys get dumped and shared. Access is bound to hardware plus injector name. There is nothing to leak.
No. Unknown HWID is not subscribed. You add clients in the database, or they buy and bind.
You receive 65% of each sale. Funds clear in 2 days, then sit on your available balance and can be withdrawn immediately.
Once every 7 days. After that they bind the new machine like a first-time buyer.
HWID, injector name, subscription and kick status. Unknown or banned machine never receives the script.
Scripts from the community — ratings, likes, views.
No insults or fake ratings. Break it — the review goes.
Only buyers can leave a review. One review per account.
Upgrade only. Pick 1 / 3 / 12 months — longer term = discount.
Add capacity on top of the plan.
Sales clear in 2 days, then you can withdraw anytime. Marketplace fee 35%.
Sales land here for 2 days, then move to available. Withdraw anytime after that.
Register with email. We send a 6-digit code. Guests can browse Explore, but cannot publish, review, buy or open Dashboard.
Create a named project. Slots, HWID database and the generated loader all live inside that project. New projects start private.
Generate a GUI loader. On inject it copies HWID and asks our API. Unknown HWID is denied. Reset a slot and that PC is gone on the next launch. We never auto-add a machine on first inject.
On Publish you add duration plans (7 days, 30 days, lifetime…). Buyers pay from the wallet. You receive 65% — platform fee is 35%. Sale funds clear in 2 days, then you can withdraw. After purchase they inject, Check HWID, then Bind. Access lasts exactly as long as the plan. HWID reset is once per 7 days.
Only buyers can leave a star review. One review per account — no spam, no guest ratings. The average shows on Explore cards and on the project page.
Sales clear in 2 days, then sit on available balance. Withdraw anytime after that. Marketplace fee 35%. History lists every operation.
Public projects are reviewed before source becomes live. Static Guard blocks obvious stealers, Roblox cookie/token exfiltration, mutable loaders and destructive file behavior, then staff performs a manual check.
Creators may attach a Discord invite. It appears as a dedicated button on the project page. Keep support channels honest; platform safety rules still apply.
Trust & Safety can block accounts and the last known IP for fraud, malware or abuse. Banned users see a clear blocked-account overlay and cannot use protected APIs until unbanned.
Security alerts, purchases, sales, reviews, moderator decisions and report receipts are mirrored into the in-app mailbox, so important messages are still visible when SMTP is delayed.
Every uploaded original script is scanned before it can be published. The engine blocks obfuscators (MoonSec, Luraph, Ironbrew, Prometheus, PSU), encoded byte and base64 blobs, minified dumps, remote loaders (loadstring(game:HttpGet…)), exploit APIs (getrenv, hookfunction, os.execute), cookie/token theft and exfiltration into webhooks and IP loggers. Fake “security” scripts that only paint a watermark are flagged HIGH RISK and require a human decision.
Buyers pay from the wallet. You receive 65% of every sale, the platform keeps 35%. Sale funds wait 2 days in “clearing”, then move to available balance. Withdrawals go through the linked payout service; until it is connected, requests stay “processing”, reserve the amount and never consume the daily limit.
Users can apply for moderator from their profile. Only administrators approve applications. Staff works in a separate space: they claim a review, read the card, the Static Guard report and the full source, then approve (the frozen revision goes live) or reject with a concrete reason. Rejected projects are frozen out of Explore until the owner fixes them and resubmits. A ban covers the account and the last known IP; banned users see a clear blocked screen.
Anyone can report a project, comment or user from its page. “Found a bug?” opens a structured form: category, details and optional contact. Every report lands in the staff room and the admin mail, so nothing is lost even if the mail is delayed.
Accounts are created by e-mail plus a one-time code. Sign-in with Google never sends your Google password — HookGuard asks for a separate local password. Security events (password changes, e-mail changes, sign-ins from a new device) are mirrored into the in-app mail with a shared read status alongside the bell.
Flash (free): 5 projects, 15 HWID slots. Pro: 15 projects, 150 slots. Pro+: 30 projects, 300 slots. Buyers can reset an HWID once per 7 days. Extra HWID packs and extra project slots are on Pricing, on top of the plan.
Письма от HookGuard и других пользователей — с историей.
Выбери письмо слева, чтобы прочитать
Site, language, currency, notifications.
Choose how RUB wallet values are displayed. Rates update automatically.
Security
Theme, language, currency and sounds are saved in this browser. Sign in to manage password, sessions and security.
Claim a review before working on it. Every approved source becomes an immutable runtime revision.
Inspect the listing, Static Guard findings and complete Original Script.
A shared room for hand-offs and difficult review decisions.
Every registered account.
Paste a project link or id. Open the original and the current draft.
Inbox of reports on users, projects, reviews and bugs.
Mods send a reasoned request. Admins approve or deny.
Closed reviews, reports and bans — with the original script.
Plan, project capacity and wallet adjustments.
If you write something, they get it with the grant — in HookGuard Mail and on their email.
Promote admins/moderators or remove moderator rights.
Ban/unban account and its last IP.
Only admins can approve new moderators.
Invoices are created through the cashier API; one button verifies the settings, the signature and the API key. «Check status» in the merchant cabinet must get HTTP 200 + YES from our webhook.
Do not pick the widget, the pay button or the SCI payment link. Top-ups use the merchant API. The key belongs on Settings → API, not the widget key and not FK Wallet.
What the cashier sent to /webhooks/freekassa and what we answered. Secrets are never stored.
Manual payouts. Users already paid from the wallet — send the transfer yourself, then mark sent. Reject returns the money.
You cannot use HookGuard because this account or IP was blocked by Trust & Safety.
If you believe this is a mistake, contact support from another account with the blocked e-mail.