GitHub topics: secrets-detection
Finatext/gls
Support gitleaks config development and extend some gitleaks features.
Language: Rust - Size: 299 KB - Last synced at: about 8 hours ago - Pushed at: about 9 hours ago - Stars: 14 - Forks: 0

righettod/toolbox-codescan
Customized toolbox to perform offline scanning of a code base.
Language: Shell - Size: 210 KB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 1 - Forks: 0

trufflesecurity/trufflehog-burp-suite-extension
Official TruffleHog Burp Suite Extension. Scan Burp Suite traffic for 800+ different types of secrets (API keys, passwords, SSH keys, etc) using TruffleHog.
Language: Python - Size: 1.09 MB - Last synced at: 2 days ago - Pushed at: 2 months ago - Stars: 67 - Forks: 11

praetorian-inc/noseyparker-explorer
Interactive results explorer and annotation tool for Nosey Parker
Language: Python - Size: 4.98 MB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 29 - Forks: 1

praetorian-inc/noseyparker
Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.
Language: Rust - Size: 28.3 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 1,918 - Forks: 100

reversinglabs/rl-scanner
ReversingLabs rl-scanner Docker image
Language: Python - Size: 165 KB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 4 - Forks: 0

reinier-vegter/gitleaks-bulk
Gitleaks in bulk, scanning many repos from multiple backends
Language: Python - Size: 113 KB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 0 - Forks: 1

GitGuardian/py-gitguardian
Python API client library for the GitGuardian API
Language: Python - Size: 525 KB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 79 - Forks: 16

riza/indextree
Generates the tree of the directory listing page.
Language: Go - Size: 169 KB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 49 - Forks: 2

EwenQuim/entropy
Entropy is a CLI tool that will scan your codebase for high entropy lines, which are often secrets.
Language: Go - Size: 557 KB - Last synced at: 5 days ago - Pushed at: about 2 months ago - Stars: 706 - Forks: 21

godaddy/tartufo
Searches through git repositories for high entropy strings and secrets, digging deep into commit history
Language: Python - Size: 1.78 MB - Last synced at: 2 days ago - Pushed at: 2 months ago - Stars: 502 - Forks: 72

GitGuardian/ggshield
Detect and validate 400+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret detection and security.
Language: Python - Size: 6.05 MB - Last synced at: 8 days ago - Pushed at: 8 days ago - Stars: 1,746 - Forks: 153

dmno-dev/dmno
The missing middleware for your configuration and secrets.
Language: TypeScript - Size: 15.9 MB - Last synced at: 1 day ago - Pushed at: 13 days ago - Stars: 220 - Forks: 9

GitGuardian/gitguardian-vscode
Stop leaks. Safeguard your secrets with GitGuardian. GitGuardian actively prevents accidental exposure of sensitive information in your code, allowing you to code confidently and maintain the integrity of your data.
Language: TypeScript - Size: 146 MB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 28 - Forks: 2

edoardottt/cariddi
Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more
Language: Go - Size: 521 KB - Last synced at: 13 days ago - Pushed at: 13 days ago - Stars: 1,655 - Forks: 172

GitGuardian/ggshield-action
GitGuardian Shield GitHub Action - Find exposed credentials in your commits
Size: 207 KB - Last synced at: 7 days ago - Pushed at: 14 days ago - Stars: 338 - Forks: 23

pavangajjala/vaultscan-community
Privacy-first secret leak detection tool for DevOps and security teams. Built for scalable, offline-first scanning with future enterprise expansion plans.
Language: Python - Size: 1.31 MB - Last synced at: 15 days ago - Pushed at: 15 days ago - Stars: 0 - Forks: 0

github-samples/securing-your-code
Securing your Code with GitHub workshop
Language: TypeScript - Size: 24.6 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 0 - Forks: 0

turbot/steampipe-plugin-code
Use SQL to instantly query secrets and more from source code. Open source CLI. No DB required.
Language: Go - Size: 516 KB - Last synced at: 21 days ago - Pushed at: 25 days ago - Stars: 17 - Forks: 2

deepfence/SecretScanner
:unlock: :unlock: Find secrets and passwords in container images and file systems :unlock: :unlock:
Language: Go - Size: 874 KB - Last synced at: 20 days ago - Pushed at: about 1 month ago - Stars: 3,179 - Forks: 326

spark1security/n0s1
Secret Scanner for Slack, Jira, Confluence, Asana, Wrike, Linear, Zendesk, and GitHub
Language: Python - Size: 259 KB - Last synced at: 25 days ago - Pushed at: 25 days ago - Stars: 56 - Forks: 12

sebastian93921/oott
Tools suits for pentesters and for code reviewing
Language: Go - Size: 1.01 MB - Last synced at: 27 days ago - Pushed at: 27 days ago - Stars: 6 - Forks: 2

sergiomarotco/Password-Finder
Fast password finder in MS office files (doc, xls) and other files (rtf, txt, xml) in folders
Language: C# - Size: 1.15 MB - Last synced at: 21 days ago - Pushed at: about 3 years ago - Stars: 19 - Forks: 4

valayDave/tell-me-your-secrets
Find secrets on any machine from over 120 Different Signatures.
Language: Python - Size: 1.35 MB - Last synced at: 25 days ago - Pushed at: 9 months ago - Stars: 46 - Forks: 9

spark1security/n0s1-action
Run n0s1 as Github action to scan Slack, Jira, Confluence, Asana, Wrike, Linear, Zendesk and GitHub for secret leaks
Language: Shell - Size: 42 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 4 - Forks: 0

FrodeHus/ludvig
Security scanner using YARA
Language: Python - Size: 404 KB - Last synced at: about 1 month ago - Pushed at: about 1 year ago - Stars: 16 - Forks: 2

blackhatethicalhacking/SecretOpt1c
SecretOpt1c is a Red Team tool that helps uncover sensitive information in websites using ACTIVE and PASSIVE Techniques for Superior Accuracy!
Language: Shell - Size: 128 KB - Last synced at: about 1 month ago - Pushed at: 8 months ago - Stars: 224 - Forks: 32

mazen160/secrets-patterns-db
Secrets Patterns DB: The largest open-source Database for detecting secrets, API keys, passwords, tokens, and more.
Language: Python - Size: 175 KB - Last synced at: about 1 month ago - Pushed at: over 1 year ago - Stars: 1,123 - Forks: 136

foresturquhart/grimoire
A lightweight tool that converts directory contents into structured output optimized for LLM interpretation, featuring Git-aware file ordering, secret detection/redaction, token counting, and customizable filtering.
Language: Go - Size: 239 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 13 - Forks: 0

adeptex/whispers
Identify hardcoded secrets in static structured text (version 2)
Language: Python - Size: 386 KB - Last synced at: about 1 month ago - Pushed at: 3 months ago - Stars: 91 - Forks: 11

duo-labs/secret-bridge
Monitors Github for leaked secrets
Language: Python - Size: 63.5 KB - Last synced at: about 1 month ago - Pushed at: 7 months ago - Stars: 197 - Forks: 40

Plazmaz/leaky-repo
Benchmarking repo for secrets scanning
Language: Python - Size: 47.9 KB - Last synced at: 21 days ago - Pushed at: 9 months ago - Stars: 231 - Forks: 135

salesforce/lobster-pot
Scans every git push to your Github organisations to find unwanted secrets.
Language: Go - Size: 16.1 MB - Last synced at: 27 days ago - Pushed at: almost 2 years ago - Stars: 87 - Forks: 5

auth0/repo-supervisor 📦
Scan your code for security misconfiguration, search for passwords and secrets. :mag:
Language: JavaScript - Size: 1.36 MB - Last synced at: about 2 months ago - Pushed at: almost 2 years ago - Stars: 644 - Forks: 89

Masriyan/No-Secret-Scan-Github-Gitlab
No Secret Scan is a Python tool designed to help developers scan their GitHub and GitLab repositories for potential secrets like API keys, tokens, and passwords. With customizable secret patterns, real-time progress indicators, and detailed reporting, No Secret Scan makes it easy to identify and address security risks in your code.
Language: Python - Size: 92.8 KB - Last synced at: about 2 months ago - Pushed at: about 2 months ago - Stars: 1 - Forks: 2

nightfallai/git-repo-scanner
Scan repositories on GitHub and GitLab for sensitive data such as secrets, credentials, PII, and PCI.
Language: Python - Size: 7.81 KB - Last synced at: 1 day ago - Pushed at: about 2 years ago - Stars: 6 - Forks: 1

Skyscanner/whispers 📦
Identify hardcoded secrets in static structured text
Language: Python - Size: 306 KB - Last synced at: about 1 month ago - Pushed at: over 1 year ago - Stars: 487 - Forks: 72

DariuszPorowski/github-action-gitleaks
This GitHub Action allows you to run Gitleaks in your GitHub workflow.
Language: Shell - Size: 101 KB - Last synced at: about 13 hours ago - Pushed at: 2 months ago - Stars: 21 - Forks: 10

paulveillard/cybersecurity-secrets-management
An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about Secrets Management Process in Cybersecurity.
Language: HCL - Size: 8.12 MB - Last synced at: about 2 months ago - Pushed at: almost 2 years ago - Stars: 4 - Forks: 0

dwisiswant0/gf-secrets
Secret and/or credential patterns used for gf.
Language: Shell - Size: 14.6 KB - Last synced at: about 1 month ago - Pushed at: over 2 years ago - Stars: 240 - Forks: 51

ArpitStack/secret-stack
SecretStack is a robust Visual Studio Code extension that safeguards your workspace by identifying exposed secrets like API keys, tokens, and sensitive data. With customizable detection, real-time alerts, and detailed reports, SecretStack secures your code before it reaches Git.
Language: TypeScript - Size: 907 KB - Last synced at: about 1 month ago - Pushed at: 4 months ago - Stars: 6 - Forks: 0

Comcast/xGitGuard
AI based Secrets Detection Python Framework
Language: Python - Size: 2.26 MB - Last synced at: about 13 hours ago - Pushed at: 3 months ago - Stars: 61 - Forks: 30

oxsecurity/codetotal
Analyze any snippet, file, or repository to detect possible security flaws such as secret in code, open source vulnerability, code security, vulnerability, insecure infrastructure as code, and potential legal issues with open source licenses.
Language: TypeScript - Size: 43.2 MB - Last synced at: about 1 month ago - Pushed at: 9 months ago - Stars: 76 - Forks: 10

nightfallai/nightfall-java-sdk
Java Data Loss Prevention (DLP) SDK - Nightfall Developer Platform
Language: Java - Size: 125 KB - Last synced at: 1 day ago - Pushed at: about 2 years ago - Stars: 12 - Forks: 3

matejsmycka/regfinder
Simple regex matcher that should be used as simple manual checker for secrets in your file
Language: Go - Size: 40.8 MB - Last synced at: 5 months ago - Pushed at: 5 months ago - Stars: 2 - Forks: 0

clutchsecurity/clutch-vscode-extension
The Clutch VS code extension allows any user to scan for secrets in his/hers open workspace automatically within the IDE
Language: JavaScript - Size: 26.4 KB - Last synced at: 6 months ago - Pushed at: 6 months ago - Stars: 5 - Forks: 0

bthuilot/dockerleaks 📦
protect and discover secrets in docker images
Language: Go - Size: 141 KB - Last synced at: 6 months ago - Pushed at: 6 months ago - Stars: 0 - Forks: 0

SecureStackCo/actions-secrets
Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API keys, .env and config files and more
Size: 1.27 MB - Last synced at: 21 days ago - Pushed at: almost 2 years ago - Stars: 30 - Forks: 4

dwisiswant0/secpat2gf
convert secret patterns to gf compatible.
Language: Python - Size: 10.7 KB - Last synced at: 11 days ago - Pushed at: about 2 years ago - Stars: 39 - Forks: 4

GitsecureHQ/gitsecure-docs
Official documentation for Gitsecure
Language: MDX - Size: 37.6 MB - Last synced at: 7 months ago - Pushed at: 7 months ago - Stars: 6 - Forks: 3

CheckPointSW/spectral-github-action
Automated Secrets, Misconfiguration, IaC Misconfiguration detection, and OSS by Check Point CloudGuard
Language: JavaScript - Size: 204 KB - Last synced at: 2 months ago - Pushed at: about 1 year ago - Stars: 2 - Forks: 0

nightfallai/nightfall-nodejs-sdk
NodeJS Data Loss Prevention (DLP) SDK - Nightfall Developer Platform
Language: TypeScript - Size: 84 KB - Last synced at: 1 day ago - Pushed at: almost 3 years ago - Stars: 9 - Forks: 1

abdullahkhawer/find-and-report-secrets-in-code
Security solution to find secrets in a git repository and report about them. It uses Gitleaks and some custom scripts to generate a JSON report for secrets found with only relevant information along with commit ids and commit authors. It can be used to update an Atlassian Confluence page and send an alert on Slack based on the findings.
Language: Python - Size: 61.5 KB - Last synced at: about 1 month ago - Pushed at: 8 months ago - Stars: 4 - Forks: 3

jmessiass/devsecops
Exemplo de workflow de segurança que realiza testes SAST, SCA, DAST, Secrets Scan e IaC Scan via GitHub Actions utilizando ferramentas open source.
Language: Python - Size: 359 KB - Last synced at: 9 months ago - Pushed at: 9 months ago - Stars: 7 - Forks: 0

nightfallai/nightfall-python-sdk
Python Data Loss Prevention (DLP) SDK - Nightfall Developer Platform
Language: Python - Size: 5.67 MB - Last synced at: 1 day ago - Pushed at: over 1 year ago - Stars: 25 - Forks: 13

nightfallai/nightfall_dlp_action
GitHub Data Loss Prevention (DLP) Action: Scan Pull Requests for sensitive data, like credentials & secrets, PII, credit card numbers, and more.
Size: 47.9 KB - Last synced at: 1 day ago - Pushed at: over 1 year ago - Stars: 58 - Forks: 13

secret-scanner/action
GitHub Action that wraps Yelp/detect-secrets and provides an enterprise friendly way of detecting and preventing secrets in code.
Language: Shell - Size: 33.2 KB - Last synced at: 6 days ago - Pushed at: 10 months ago - Stars: 4 - Forks: 9

SecureStackCo/actions-exposure
A GitHub Action that scans your public web applications after every deployment. Add this to your dev, staging and prod steps and SecureStack will make sure that what you've just deployed is secure and meets your requirements.
Size: 1.76 MB - Last synced at: about 1 year ago - Pushed at: almost 2 years ago - Stars: 21 - Forks: 5

openclarity/vmclarity
VMClarity is a tool for agentless detection and management of Virtual Machine Software Bill Of Materials (SBOM) and vulnerabilities
Language: Go - Size: 37.6 MB - Last synced at: 12 months ago - Pushed at: 12 months ago - Stars: 90 - Forks: 21

nightfallai/nightfall-go-sdk
Go Data Loss Prevention (DLP) SDK - Nightfall Developer Platform
Language: Go - Size: 41 KB - Last synced at: 1 day ago - Pushed at: 7 months ago - Stars: 14 - Forks: 2

ElapseAI/elapse_secrets
Elapse Secrets Filters is a Python package for Elapse that enables searching and masking of sensitive data such as AWS keys, Github tokens, API keys, and more using predefined regex patterns.
Language: Python - Size: 8.79 KB - Last synced at: about 1 year ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 1

aws-samples/aws-appconfig-git-secrets-extn
Sample AWS AppConfig Extension bundling git-secrets for secret detection
Language: Python - Size: 7.81 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 1 - Forks: 0

austimkelly/secretsynth
A secret scanner wrapper to aggregate results across multiple secret scanning tools
Language: Python - Size: 439 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 3 - Forks: 0

GitGuardian/gg-shield-orb
GitGuardian Shield Circle CI Orb - Find exposed credentials in your commits
Size: 33.2 KB - Last synced at: 2 months ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 5

totaotata/CredsHarvester
Tool to search secrets in network shares, support SMB FTP or SFTP.
Language: Python - Size: 63.5 KB - Last synced at: over 1 year ago - Pushed at: almost 3 years ago - Stars: 2 - Forks: 2

hhruszka/secrethunter
secretshunter is a penetration testing tool that uses regular expressions to search a filesystem for secrets (logins, passwords, API keys, hashes, ssh keys etc.).
Language: Go - Size: 11.7 MB - Last synced at: 11 months ago - Pushed at: about 1 year ago - Stars: 1 - Forks: 0

gowthamaraj/CodeWhisper
Extracting silent "whispers" or notes left behind in the code
Language: Python - Size: 10.7 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 0

spekulatius/bulk-repo-cloner
A small collection of scripts to run mass updates on GitHub repos
Language: Shell - Size: 9.77 KB - Last synced at: 2 months ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 1

govindasamyarun/siem-secret-finder
To identify secrets from SIEM logs
Language: Python - Size: 11.7 KB - Last synced at: almost 2 years ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 0

Fricciolosa-Red-Team/hellsing
Sniper. Passive Secrets Hunting.🚬
Language: JavaScript - Size: 599 KB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 12 - Forks: 4

stepcheunghk/trivy-templates
Custom templates for Trivy report
Language: Smarty - Size: 2.93 KB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

ChristianWitts/actions
Repo for GitHub actions dockerfiles
Language: Shell - Size: 42 KB - Last synced at: about 2 years ago - Pushed at: almost 6 years ago - Stars: 3 - Forks: 1

wayneashleyberry/vscode-entropy-scanner
Entropy Scanner is a Visual Studio Code extension that detects high entropy strings which may contain tokens, passwords, secrets or keys that should not be committed to source control
Language: TypeScript - Size: 106 KB - Last synced at: 12 months ago - Pushed at: almost 2 years ago - Stars: 9 - Forks: 1

BluBracket/aws-s3-secret-scanner
BluBracket CLI Recipes
Language: Python - Size: 9.77 KB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 12 - Forks: 0

BluBracket/logs-risk-scanner
Language: Python - Size: 15.6 KB - Last synced at: about 2 years ago - Pushed at: about 3 years ago - Stars: 11 - Forks: 0

Taboointhezou/diamond-casino
Play
Size: 13.7 KB - Last synced at: about 2 years ago - Pushed at: almost 6 years ago - Stars: 0 - Forks: 0

customcommander/git-secrets-examples
Examples on how to use git-secrets from AWSLabs to find secrets in your Git repository
Language: Dockerfile - Size: 5.86 KB - Last synced at: about 1 month ago - Pushed at: almost 5 years ago - Stars: 1 - Forks: 0

GSA/odp-code-repository-commit-rules
This repository maintains a list of rules for finding secrets in a repository. These rules can be used for pre-commit hooks and post-commit repository scanning.
Language: Shell - Size: 17.6 KB - Last synced at: 2 months ago - Pushed at: about 5 years ago - Stars: 3 - Forks: 3
