fully autonomous credential intelligence platform that discovers, │ │ extracts, correlates, verifies, and reports exposed secrets across your │ │ target's entire attack surface.
-
Updated
May 10, 2026 - Python
fully autonomous credential intelligence platform that discovers, │ │ extracts, correlates, verifies, and reports exposed secrets across your │ │ target's entire attack surface.
Browser extension that finds API keys leaked in websites and audits their access & billing exposure. Live-validates Google, OpenAI, Anthropic, OpenRouter, xAI, Twilio, AWS, GitHub, GitLab, Slack & Stripe keys, fully on-device, no backend, no telemetry.
GitHub OSINT tool for searching code patterns, files, issues, and commits. Detect security vulnerabilities, exposed credentials, and dangerous code patterns.
🔦 كاشف — Client-side secrets & sensitive-data exposure scanner. 35+ patterns, entropy analysis, AI triage, zero telemetry.
The first secret scanner that fixes what it finds. Free, open source.
Public-service credential-leak detection and responsible disclosure: find exposed credentials on public GitHub, file courtesy notices, track remediation.
MCP server detecting leaked secrets/credentials (32+ provider rules). In the official MCP Registry: io.github.eltociear/secrets-audit-mcp. Pure stdlib, zero deps.
🔒 Real-time secret detection for VS Code - Scan code for AWS, GitHub, Stripe, Slack credentials and 40+ more patterns. Privacy-first, local processing.
GitHub Action for secretlint: scan PRs for leaked secrets & credentials in CI — zero config, fail on detection
🔐 Scan repos for secrets, API keys & PII before going public. Integrates TruffleHog, Gitleaks & Presidio with auto-remediation.
Write protection and credential scanning layer for AI agent deployments. Intercepts filesystem writes, validates scope boundaries, and builds security awareness through adaptive user education. Python 3.10+, no dependencies.
Detecção de segredos vazados em repositórios git, arquivos e stdin — reescrita em Rust de gitleaks, com correção estrutural de problemas de segurança identificados no projeto de origem.
X-Ways Forensics X-Tension wrapping TruffleHog v3 for per-item secret scanning across volume snapshots.
High-performance secret detection engine with 131 provider rules (Go)
Cloudexec: A high-performance, multi-threaded multi-cloud security & audit framework. Features concurrent secrets scanning, real-time automated pivot validation, post-auth enumeration, and WAF/DNS bypass capabilities. YAML-driven and built for DevSecOps.
Git secret scanner and protection tool - prevent API keys, passwords, and credentials from being committed (Dual Licensed: GPL v3 / Commercial)
Security starter pack for Claude Code — CLAUDE.md rules + hooks that block credential leaks before they happen
Advanced Secrets & API Key Scanner - Protect Your Code, Protect Your Business
ML-powered API key and secret detection in code. Fine-tuned CodeBERT with 97% accuracy. Free to train and run.
Multi-layer Git secret scanner using regex + entropy analysis + LLM verification to detect exposed API keys, credentials, and sensitive data in commit history. Built with Python for security auditing and DevSecOps workflows
Add a description, image, and links to the credential-scanning topic page so that developers can more easily learn about it.
To associate your repository with the credential-scanning topic, visit your repo's landing page and select "manage topics."