Repository navigation
trufflehog
- Website
- Wikipedia
Find, verify, and analyze leaked credentials
Secrets Patterns DB: The largest open-source Database for detecting secrets, API keys, passwords, tokens, and more.
Private key usage verification
Secret and/or credential patterns used for gf.
Yar is a tool for plunderin' organizations, users and/or repositories.
truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)
Official TruffleHog Burp Suite Extension. Scan Burp Suite traffic for 800+ different types of secrets (API keys, passwords, SSH keys, etc) using TruffleHog.
An open-source collection of API key rotation tutorials.
convert secret patterns to gf compatible.
Automated GitHub secret scanning with smart alerting & monitoring.
Find exposed credentials using GitHub Actions with TruffleHog Enterprise.
A secret scanner wrapper to aggregate results across multiple secret scanning tools
Open Source ASPM Platform
GitRoller: A Git Recon Tools
HTTP proxy that uses trufflehog's engine to find secrets
Repo for GitHub actions dockerfiles
Simple Tool Written In Python3 Works On Scraping User's Github Repositories And Pass Them Into trufflehog To Scan Them Against Possible Data Leaks.
DevSecOps in Practice - The Companion Toolkit
Set up your CI/CD Pipeline with a specific version of trufflehog