
trufflehog-explorer
Web-based dashboard to visualize, filter, and analyze secrets discovered by TruffleHog, with batch verification, export, and session management for…

Web-based dashboard to visualize, filter, and analyze secrets discovered by TruffleHog, with batch verification, export, and session management for…

Scans GitHub and GitLab repositories for sensitive information (tokens, secrets) by analyzing commit history and file content with configurable…

Automated tool to search public AWS EBS snapshots for accidentally exposed secrets, passwords, and private keys, deployed as a scalable Elastic…

「🔑」A tool used to hunt down API key leaks in JS files and pages

Passive recon & attack surface mapper — zero requests sent

A tool for pointesters to find candies in SharePoint

GitHub Actions Pipeline Enumeration and Attack Tool

Automated Python scanner to detect hardcoded secrets (Private Keys, API Tokens) in client-side JavaScript files.

A tool to hunt for credentials in github wild AKA git*hunt

A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.

Hunt for AI coding artifacts containing secrets.

Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.

An automated tool which can simultaneously crawl, fill forms, trigger error/debug pages and "loot" secrets out of the client-facing code of sites.

A Python program to scrape secrets from GitHub through usage of a large repository of dorks.

A tool to capture all the git secrets by leveraging multiple open source git searching tools

Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more

Passive API key and secret discovery browser extension for Chrome and Firefox. 80+ detection patterns, zero config.

🕵️ Python project to crawl for JavaScript files and search for secrets like API keys, authorization tokens, hardcoded credentials, etc.