TruffleHog
Truffle Security
Secret scanner that calls each provider's API to confirm whether a discovered credential is active, across git history, cloud storage, container images and chat and ticketing systems.
Secret Scanning
Find credentials, tokens and keys committed to code or exposed in build systems.
9 tools profiled
How it differs Finds credentials committed to code, git history and build artifacts. Vulnerable dependencies are SCA, not this.
Truffle Security
Secret scanner that calls each provider's API to confirm whether a discovered credential is active, across git history, cloud storage, container images and chat and ticketing systems.
Truffle Security
Secret scanner that calls each provider's API to confirm whether a discovered credential is active, across git history, cloud storage, container images and chat and ticketing systems.