An open API service providing repository metadata for many open source software ecosystems.

GitHub topics: secrets-detection

Finatext/gls

Support gitleaks config development and extend some gitleaks features.

Language: Rust - Size: 299 KB - Last synced at: about 8 hours ago - Pushed at: about 9 hours ago - Stars: 14 - Forks: 0

righettod/toolbox-codescan

Customized toolbox to perform offline scanning of a code base.

Language: Shell - Size: 210 KB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 1 - Forks: 0

trufflesecurity/trufflehog-burp-suite-extension

Official TruffleHog Burp Suite Extension. Scan Burp Suite traffic for 800+ different types of secrets (API keys, passwords, SSH keys, etc) using TruffleHog.

Language: Python - Size: 1.09 MB - Last synced at: 2 days ago - Pushed at: 2 months ago - Stars: 67 - Forks: 11

praetorian-inc/noseyparker-explorer

Interactive results explorer and annotation tool for Nosey Parker

Language: Python - Size: 4.98 MB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 29 - Forks: 1

praetorian-inc/noseyparker

Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.

Language: Rust - Size: 28.3 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 1,918 - Forks: 100

reversinglabs/rl-scanner

ReversingLabs rl-scanner Docker image

Language: Python - Size: 165 KB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 4 - Forks: 0

reinier-vegter/gitleaks-bulk

Gitleaks in bulk, scanning many repos from multiple backends

Language: Python - Size: 113 KB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 0 - Forks: 1

GitGuardian/py-gitguardian

Python API client library for the GitGuardian API

Language: Python - Size: 525 KB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 79 - Forks: 16

riza/indextree

Generates the tree of the directory listing page.

Language: Go - Size: 169 KB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 49 - Forks: 2

EwenQuim/entropy

Entropy is a CLI tool that will scan your codebase for high entropy lines, which are often secrets.

Language: Go - Size: 557 KB - Last synced at: 5 days ago - Pushed at: about 2 months ago - Stars: 706 - Forks: 21

godaddy/tartufo

Searches through git repositories for high entropy strings and secrets, digging deep into commit history

Language: Python - Size: 1.78 MB - Last synced at: 2 days ago - Pushed at: 2 months ago - Stars: 502 - Forks: 72

GitGuardian/ggshield

Detect and validate 400+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret detection and security.

Language: Python - Size: 6.05 MB - Last synced at: 8 days ago - Pushed at: 8 days ago - Stars: 1,746 - Forks: 153

dmno-dev/dmno

The missing middleware for your configuration and secrets.

Language: TypeScript - Size: 15.9 MB - Last synced at: 1 day ago - Pushed at: 13 days ago - Stars: 220 - Forks: 9

GitGuardian/gitguardian-vscode

Stop leaks. Safeguard your secrets with GitGuardian. GitGuardian actively prevents accidental exposure of sensitive information in your code, allowing you to code confidently and maintain the integrity of your data.

Language: TypeScript - Size: 146 MB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 28 - Forks: 2

edoardottt/cariddi

Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more

Language: Go - Size: 521 KB - Last synced at: 13 days ago - Pushed at: 13 days ago - Stars: 1,655 - Forks: 172

GitGuardian/ggshield-action

GitGuardian Shield GitHub Action - Find exposed credentials in your commits

Size: 207 KB - Last synced at: 7 days ago - Pushed at: 14 days ago - Stars: 338 - Forks: 23

pavangajjala/vaultscan-community

Privacy-first secret leak detection tool for DevOps and security teams. Built for scalable, offline-first scanning with future enterprise expansion plans.

Language: Python - Size: 1.31 MB - Last synced at: 15 days ago - Pushed at: 15 days ago - Stars: 0 - Forks: 0

github-samples/securing-your-code

Securing your Code with GitHub workshop

Language: TypeScript - Size: 24.6 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 0 - Forks: 0

turbot/steampipe-plugin-code

Use SQL to instantly query secrets and more from source code. Open source CLI. No DB required.

Language: Go - Size: 516 KB - Last synced at: 21 days ago - Pushed at: 25 days ago - Stars: 17 - Forks: 2

deepfence/SecretScanner

:unlock: :unlock: Find secrets and passwords in container images and file systems :unlock: :unlock:

Language: Go - Size: 874 KB - Last synced at: 20 days ago - Pushed at: about 1 month ago - Stars: 3,179 - Forks: 326

spark1security/n0s1

Secret Scanner for Slack, Jira, Confluence, Asana, Wrike, Linear, Zendesk, and GitHub

Language: Python - Size: 259 KB - Last synced at: 25 days ago - Pushed at: 25 days ago - Stars: 56 - Forks: 12

sebastian93921/oott

Tools suits for pentesters and for code reviewing

Language: Go - Size: 1.01 MB - Last synced at: 27 days ago - Pushed at: 27 days ago - Stars: 6 - Forks: 2

sergiomarotco/Password-Finder

Fast password finder in MS office files (doc, xls) and other files (rtf, txt, xml) in folders

Language: C# - Size: 1.15 MB - Last synced at: 21 days ago - Pushed at: about 3 years ago - Stars: 19 - Forks: 4

valayDave/tell-me-your-secrets

Find secrets on any machine from over 120 Different Signatures.

Language: Python - Size: 1.35 MB - Last synced at: 25 days ago - Pushed at: 9 months ago - Stars: 46 - Forks: 9

spark1security/n0s1-action

Run n0s1 as Github action to scan Slack, Jira, Confluence, Asana, Wrike, Linear, Zendesk and GitHub for secret leaks

Language: Shell - Size: 42 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 4 - Forks: 0

FrodeHus/ludvig

Security scanner using YARA

Language: Python - Size: 404 KB - Last synced at: about 1 month ago - Pushed at: about 1 year ago - Stars: 16 - Forks: 2

blackhatethicalhacking/SecretOpt1c

SecretOpt1c is a Red Team tool that helps uncover sensitive information in websites using ACTIVE and PASSIVE Techniques for Superior Accuracy!

Language: Shell - Size: 128 KB - Last synced at: about 1 month ago - Pushed at: 8 months ago - Stars: 224 - Forks: 32

mazen160/secrets-patterns-db

Secrets Patterns DB: The largest open-source Database for detecting secrets, API keys, passwords, tokens, and more.

Language: Python - Size: 175 KB - Last synced at: about 1 month ago - Pushed at: over 1 year ago - Stars: 1,123 - Forks: 136

foresturquhart/grimoire

A lightweight tool that converts directory contents into structured output optimized for LLM interpretation, featuring Git-aware file ordering, secret detection/redaction, token counting, and customizable filtering.

Language: Go - Size: 239 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 13 - Forks: 0

adeptex/whispers

Identify hardcoded secrets in static structured text (version 2)

Language: Python - Size: 386 KB - Last synced at: about 1 month ago - Pushed at: 3 months ago - Stars: 91 - Forks: 11

duo-labs/secret-bridge

Monitors Github for leaked secrets

Language: Python - Size: 63.5 KB - Last synced at: about 1 month ago - Pushed at: 7 months ago - Stars: 197 - Forks: 40

Plazmaz/leaky-repo

Benchmarking repo for secrets scanning

Language: Python - Size: 47.9 KB - Last synced at: 21 days ago - Pushed at: 9 months ago - Stars: 231 - Forks: 135

salesforce/lobster-pot

Scans every git push to your Github organisations to find unwanted secrets.

Language: Go - Size: 16.1 MB - Last synced at: 27 days ago - Pushed at: almost 2 years ago - Stars: 87 - Forks: 5

auth0/repo-supervisor 📦

Scan your code for security misconfiguration, search for passwords and secrets. :mag:

Language: JavaScript - Size: 1.36 MB - Last synced at: about 2 months ago - Pushed at: almost 2 years ago - Stars: 644 - Forks: 89

Masriyan/No-Secret-Scan-Github-Gitlab

No Secret Scan is a Python tool designed to help developers scan their GitHub and GitLab repositories for potential secrets like API keys, tokens, and passwords. With customizable secret patterns, real-time progress indicators, and detailed reporting, No Secret Scan makes it easy to identify and address security risks in your code.

Language: Python - Size: 92.8 KB - Last synced at: about 2 months ago - Pushed at: about 2 months ago - Stars: 1 - Forks: 2

nightfallai/git-repo-scanner

Scan repositories on GitHub and GitLab for sensitive data such as secrets, credentials, PII, and PCI.

Language: Python - Size: 7.81 KB - Last synced at: 1 day ago - Pushed at: about 2 years ago - Stars: 6 - Forks: 1

Skyscanner/whispers 📦

Identify hardcoded secrets in static structured text

Language: Python - Size: 306 KB - Last synced at: about 1 month ago - Pushed at: over 1 year ago - Stars: 487 - Forks: 72

DariuszPorowski/github-action-gitleaks

This GitHub Action allows you to run Gitleaks in your GitHub workflow.

Language: Shell - Size: 101 KB - Last synced at: about 13 hours ago - Pushed at: 2 months ago - Stars: 21 - Forks: 10

paulveillard/cybersecurity-secrets-management

An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about Secrets Management Process in Cybersecurity.

Language: HCL - Size: 8.12 MB - Last synced at: about 2 months ago - Pushed at: almost 2 years ago - Stars: 4 - Forks: 0

dwisiswant0/gf-secrets

Secret and/or credential patterns used for gf.

Language: Shell - Size: 14.6 KB - Last synced at: about 1 month ago - Pushed at: over 2 years ago - Stars: 240 - Forks: 51

ArpitStack/secret-stack

SecretStack is a robust Visual Studio Code extension that safeguards your workspace by identifying exposed secrets like API keys, tokens, and sensitive data. With customizable detection, real-time alerts, and detailed reports, SecretStack secures your code before it reaches Git.

Language: TypeScript - Size: 907 KB - Last synced at: about 1 month ago - Pushed at: 4 months ago - Stars: 6 - Forks: 0

Comcast/xGitGuard

AI based Secrets Detection Python Framework

Language: Python - Size: 2.26 MB - Last synced at: about 13 hours ago - Pushed at: 3 months ago - Stars: 61 - Forks: 30

oxsecurity/codetotal

Analyze any snippet, file, or repository to detect possible security flaws such as secret in code, open source vulnerability, code security, vulnerability, insecure infrastructure as code, and potential legal issues with open source licenses.

Language: TypeScript - Size: 43.2 MB - Last synced at: about 1 month ago - Pushed at: 9 months ago - Stars: 76 - Forks: 10

nightfallai/nightfall-java-sdk

Java Data Loss Prevention (DLP) SDK - Nightfall Developer Platform

Language: Java - Size: 125 KB - Last synced at: 1 day ago - Pushed at: about 2 years ago - Stars: 12 - Forks: 3

matejsmycka/regfinder

Simple regex matcher that should be used as simple manual checker for secrets in your file

Language: Go - Size: 40.8 MB - Last synced at: 5 months ago - Pushed at: 5 months ago - Stars: 2 - Forks: 0

clutchsecurity/clutch-vscode-extension

The Clutch VS code extension allows any user to scan for secrets in his/hers open workspace automatically within the IDE

Language: JavaScript - Size: 26.4 KB - Last synced at: 6 months ago - Pushed at: 6 months ago - Stars: 5 - Forks: 0

bthuilot/dockerleaks 📦

protect and discover secrets in docker images

Language: Go - Size: 141 KB - Last synced at: 6 months ago - Pushed at: 6 months ago - Stars: 0 - Forks: 0

SecureStackCo/actions-secrets

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API keys, .env and config files and more

Size: 1.27 MB - Last synced at: 21 days ago - Pushed at: almost 2 years ago - Stars: 30 - Forks: 4

dwisiswant0/secpat2gf

convert secret patterns to gf compatible.

Language: Python - Size: 10.7 KB - Last synced at: 11 days ago - Pushed at: about 2 years ago - Stars: 39 - Forks: 4

GitsecureHQ/gitsecure-docs

Official documentation for Gitsecure

Language: MDX - Size: 37.6 MB - Last synced at: 7 months ago - Pushed at: 7 months ago - Stars: 6 - Forks: 3

CheckPointSW/spectral-github-action

Automated Secrets, Misconfiguration, IaC Misconfiguration detection, and OSS by Check Point CloudGuard

Language: JavaScript - Size: 204 KB - Last synced at: 2 months ago - Pushed at: about 1 year ago - Stars: 2 - Forks: 0

nightfallai/nightfall-nodejs-sdk

NodeJS Data Loss Prevention (DLP) SDK - Nightfall Developer Platform

Language: TypeScript - Size: 84 KB - Last synced at: 1 day ago - Pushed at: almost 3 years ago - Stars: 9 - Forks: 1

abdullahkhawer/find-and-report-secrets-in-code

Security solution to find secrets in a git repository and report about them. It uses Gitleaks and some custom scripts to generate a JSON report for secrets found with only relevant information along with commit ids and commit authors. It can be used to update an Atlassian Confluence page and send an alert on Slack based on the findings.

Language: Python - Size: 61.5 KB - Last synced at: about 1 month ago - Pushed at: 8 months ago - Stars: 4 - Forks: 3

jmessiass/devsecops

Exemplo de workflow de segurança que realiza testes SAST, SCA, DAST, Secrets Scan e IaC Scan via GitHub Actions utilizando ferramentas open source.

Language: Python - Size: 359 KB - Last synced at: 9 months ago - Pushed at: 9 months ago - Stars: 7 - Forks: 0

nightfallai/nightfall-python-sdk

Python Data Loss Prevention (DLP) SDK - Nightfall Developer Platform

Language: Python - Size: 5.67 MB - Last synced at: 1 day ago - Pushed at: over 1 year ago - Stars: 25 - Forks: 13

nightfallai/nightfall_dlp_action

GitHub Data Loss Prevention (DLP) Action: Scan Pull Requests for sensitive data, like credentials & secrets, PII, credit card numbers, and more.

Size: 47.9 KB - Last synced at: 1 day ago - Pushed at: over 1 year ago - Stars: 58 - Forks: 13

secret-scanner/action

GitHub Action that wraps Yelp/detect-secrets and provides an enterprise friendly way of detecting and preventing secrets in code.

Language: Shell - Size: 33.2 KB - Last synced at: 6 days ago - Pushed at: 10 months ago - Stars: 4 - Forks: 9

SecureStackCo/actions-exposure

A GitHub Action that scans your public web applications after every deployment. Add this to your dev, staging and prod steps and SecureStack will make sure that what you've just deployed is secure and meets your requirements.

Size: 1.76 MB - Last synced at: about 1 year ago - Pushed at: almost 2 years ago - Stars: 21 - Forks: 5

openclarity/vmclarity

VMClarity is a tool for agentless detection and management of Virtual Machine Software Bill Of Materials (SBOM) and vulnerabilities

Language: Go - Size: 37.6 MB - Last synced at: 12 months ago - Pushed at: 12 months ago - Stars: 90 - Forks: 21

nightfallai/nightfall-go-sdk

Go Data Loss Prevention (DLP) SDK - Nightfall Developer Platform

Language: Go - Size: 41 KB - Last synced at: 1 day ago - Pushed at: 7 months ago - Stars: 14 - Forks: 2

ElapseAI/elapse_secrets

Elapse Secrets Filters is a Python package for Elapse that enables searching and masking of sensitive data such as AWS keys, Github tokens, API keys, and more using predefined regex patterns.

Language: Python - Size: 8.79 KB - Last synced at: about 1 year ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 1

aws-samples/aws-appconfig-git-secrets-extn

Sample AWS AppConfig Extension bundling git-secrets for secret detection

Language: Python - Size: 7.81 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 1 - Forks: 0

austimkelly/secretsynth

A secret scanner wrapper to aggregate results across multiple secret scanning tools

Language: Python - Size: 439 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 3 - Forks: 0

GitGuardian/gg-shield-orb

GitGuardian Shield Circle CI Orb - Find exposed credentials in your commits

Size: 33.2 KB - Last synced at: 2 months ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 5

totaotata/CredsHarvester

Tool to search secrets in network shares, support SMB FTP or SFTP.

Language: Python - Size: 63.5 KB - Last synced at: over 1 year ago - Pushed at: almost 3 years ago - Stars: 2 - Forks: 2

hhruszka/secrethunter

secretshunter is a penetration testing tool that uses regular expressions to search a filesystem for secrets (logins, passwords, API keys, hashes, ssh keys etc.).

Language: Go - Size: 11.7 MB - Last synced at: 11 months ago - Pushed at: about 1 year ago - Stars: 1 - Forks: 0

gowthamaraj/CodeWhisper

Extracting silent "whispers" or notes left behind in the code

Language: Python - Size: 10.7 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 0

spekulatius/bulk-repo-cloner

A small collection of scripts to run mass updates on GitHub repos

Language: Shell - Size: 9.77 KB - Last synced at: 2 months ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 1

govindasamyarun/siem-secret-finder

To identify secrets from SIEM logs

Language: Python - Size: 11.7 KB - Last synced at: almost 2 years ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 0

Fricciolosa-Red-Team/hellsing

Sniper. Passive Secrets Hunting.🚬

Language: JavaScript - Size: 599 KB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 12 - Forks: 4

stepcheunghk/trivy-templates

Custom templates for Trivy report

Language: Smarty - Size: 2.93 KB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

ChristianWitts/actions

Repo for GitHub actions dockerfiles

Language: Shell - Size: 42 KB - Last synced at: about 2 years ago - Pushed at: almost 6 years ago - Stars: 3 - Forks: 1

wayneashleyberry/vscode-entropy-scanner

Entropy Scanner is a Visual Studio Code extension that detects high entropy strings which may contain tokens, passwords, secrets or keys that should not be committed to source control

Language: TypeScript - Size: 106 KB - Last synced at: 12 months ago - Pushed at: almost 2 years ago - Stars: 9 - Forks: 1

BluBracket/aws-s3-secret-scanner

BluBracket CLI Recipes

Language: Python - Size: 9.77 KB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 12 - Forks: 0

BluBracket/logs-risk-scanner

Language: Python - Size: 15.6 KB - Last synced at: about 2 years ago - Pushed at: about 3 years ago - Stars: 11 - Forks: 0

Taboointhezou/diamond-casino

Play

Size: 13.7 KB - Last synced at: about 2 years ago - Pushed at: almost 6 years ago - Stars: 0 - Forks: 0

customcommander/git-secrets-examples

Examples on how to use git-secrets from AWSLabs to find secrets in your Git repository

Language: Dockerfile - Size: 5.86 KB - Last synced at: about 1 month ago - Pushed at: almost 5 years ago - Stars: 1 - Forks: 0

GSA/odp-code-repository-commit-rules

This repository maintains a list of rules for finding secrets in a repository. These rules can be used for pre-commit hooks and post-commit repository scanning.

Language: Shell - Size: 17.6 KB - Last synced at: 2 months ago - Pushed at: about 5 years ago - Stars: 3 - Forks: 3