A security layer for Git repositories
-
Updated
Sep 24, 2026 - Go
A security layer for Git repositories
Finding potential software vulnerabilities from git commit messages
Security guardrails for Claude Code, MCP tools, and Claude cowork workflows. Local-first modular YARA-style guard packs for secrets, exfiltration, prompt injection, MCP abuse, and risky agent actions.
Exposure intelligence for the AI-infrastructure layer — finds and weighs leaked credentials, MCP/agent configs, git-metadata secrets, and supply-chain risk, and tells you which exposures to trust. Active verification, orphan-signal triage, SARIF dedup. OWASP LLM + MITRE ATLAS tagged.
Use Certificate Transparency Logs to find Jenkins and GitLab instances containing secrets
SecScan is a fast, configurable secret scanning tool written in Go that detects API keys, tokens, credentials, and high-entropy secrets across source code and full Git history. Built for developers and CI pipelines, with strong defaults and low false positives.
Git watchdog will scan your public repository and find out the vulnerabilities
# ⚖️ LEGAL COMPLIANCE TOOL ⚖️ ## THIS IS A GDPR COMPLIANCE CHECKER ## NOT A MALICIOUS SCANNER OR PHISHING TOOL ## WE HELP ORGANIZATIONS COMPLY WITH EUROPEAN DATA PROTECTION LAW
CLI tool to scan local codebases and public GitHub repos for leaked API keys and secrets, including git history
Find credentials in files or staged Git changes with redacted output and allowlisting.
Keep your GitHub repositories clean. Detect leaks, mistakes, and vulnerabilities before you even know they exist.
🔐 Scan repos for secrets, API keys & PII before going public. Integrates TruffleHog, Gitleaks & Presidio with auto-remediation.
Automated secret detection and commit protection platform for Git repositories using regex and entropy-based analysis.
Find and remove secrets from your git history — before someone else does.
Zero-dependency secret and credential scanner in pure Python: signatures plus entropy across the working tree and every commit in git history, redacted by default, with JSON and SARIF output for CI.
A TypeScript-powered developer security companion CLI for supply chain security, dependency intelligence, secret detection, security auditing, encrypted local secrets management, Git security checks, and secure development education.
Advanced Secrets & API Key Scanner - Protect Your Code, Protect Your Business
This is going to be a customized script for searching through people's gh repos for creds, personal info, keys, etc.
Multi-layer Git secret scanner using regex + entropy analysis + LLM verification to detect exposed API keys, credentials, and sensitive data in commit history. Built with Python for security auditing and DevSecOps workflows
To associate your repository with the git-security topic, visit your repo's landing page and select "manage topics."