An enterprise friendly way of detecting and preventing secrets in code.
β4,630Apr 2, 2026Updated 4 months ago
Alternatives and similar repositories for detect-secrets
Users that are interested in detect-secrets are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Find secrets with Gitleaks πβ29,035Updated this week
- β107Apr 2, 2026Updated 4 months ago
- Find, verify, and analyze leaked credentialsβ27,639Updated this week
- Prevents you from committing secrets and credentials into git repositoriesβ13,385Sep 17, 2025Updated 11 months ago
- Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source paβ¦β8,975Updated this week
- Deploy to Railway using AI coding agents - Free Credits Offer β’ AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and moreβ37,715Updated this week
- Tfsec is now part of Trivyβ7,034Mar 25, 2026Updated 5 months ago
- Vulnerability Static Analysis for Containersβ11,054Aug 25, 2026Updated last week
- A suite of secret scanners built in Rust for performance. Based on TruffleHog (https://github.com/dxa4481/truffleHog) which is written inβ¦β556Aug 3, 2026Updated 3 weeks ago
- Bandit is a tool designed to find common security issues in Python code.β8,248Updated this week
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.β16,455Updated this week
- Multi-Cloud Security Auditing Toolβ7,807Sep 23, 2025Updated 11 months ago
- Hunt for security weaknesses in Kubernetes clustersβ5,082Mar 19, 2024Updated 2 years ago
- Prowler is the worldβs most widely used open-source cloud security platform that automates security and compliance across any cloud envirβ¦β14,724Updated this week
- Virtual machines for every use case on DigitalOcean β’ AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Identify hardcoded secrets in static structured textβ505Oct 11, 2023Updated 2 years ago
- Scan your code for security misconfiguration, search for passwords and secrets.β657Jun 23, 2023Updated 3 years ago
- Ah shhgit! Find secrets in your code. Secrets detection for your GitHub, GitLab and Bitbucket repositories.β3,978Feb 28, 2025Updated last year
- Cartography is a Python tool that pulls infrastructure assets and their relationships into a Neo4j graph database.β4,034Updated this week
- A vulnerability scanner for container images and filesystemsβ12,809Updated this week
- List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.β9,502Jul 7, 2026Updated last month
- CloudMapper helps you analyze your Amazon Web Services (AWS) environments.β6,290Jul 15, 2024Updated 2 years ago
- Fast GitHub recon tool. Scans for leaked secrets across all of GitHub, not just known repos and orgs. Support for GitHub dorks.β1,452Feb 10, 2026Updated 6 months ago
- Reconnaissance tool for GitHub organizationsβ6,198Sep 20, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer β’ AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Cloud Security Posture Management (CSPM)β3,769Jul 28, 2026Updated last month
- Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.β5,210Nov 20, 2025Updated 9 months ago
- The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.β5,314May 19, 2026Updated 3 months ago
- Cloud Native Runtime Securityβ9,319Updated this week
- Simple and flexible tool for managing secretsβ22,975Updated this week
- Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resourβ¦β6,057Updated this week
- Using a pre-commit hook, Talisman validates the outgoing changeset for things that look suspicious β such as tokens, passwords, and privaβ¦β2,096Mar 1, 2026Updated 6 months ago
- Open-Source Unified Vulnerability Management, DevSecOps & ASPMβ4,914Updated this week
- Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructβ¦β2,698Updated this week
- End-to-end encrypted email - Proton Mail β’ AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized repoβ¦β2,244Aug 16, 2026Updated 2 weeks ago
- A Static Analysis Tool for Detecting Security Vulnerabilities in Python Web Applicationsβ2,201Dec 25, 2020Updated 5 years ago
- Dockerfile linter, validate inline bash, written in Haskellβ12,378Aug 24, 2026Updated last week
- CLI tool and library for generating a Software Bill of Materials from container images and filesystemsβ9,487Updated this week
- Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmarkβ8,162Aug 24, 2026Updated last week
- OpenSSF Scorecard - Security health metrics for Open Sourceβ5,662Updated this week
- A framework for managing and maintaining multi-language pre-commit hooks.β15,544Aug 17, 2026Updated 2 weeks ago