
jsleak
a Go code to detect leaks in JS files via regex patterns

a Go code to detect leaks in JS files via regex patterns

「🔑」A tool used to hunt down API key leaks in JS files and pages

A lightweight, cross-platform CLI tool that scans your filesystem to detect exposed secrets, API keys, and tokens. Built with Go for maximum…

Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.

Reconnaissance tool for GitHub organizations

Fast Go-based static scanner for detecting sensitive data (API keys, tokens, passwords) in JavaScript files and source code using regex patterns.

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

Recursively searches files for sensitive information using customizable regex patterns, designed for penetration testers to rapidly discover secrets…

An automated tool which can simultaneously crawl, fill forms, trigger error/debug pages and "loot" secrets out of the client-facing code of sites.

Static analysis CLI that scans AI-generated code for vulnerabilities like SQL injection, unsafe reflection, and hardcoded secrets, with SARIF export…

Go-based tool that scans webpages and JavaScript files to discover hidden subdomains and secrets, with optional crawling and real-time proxy analysis…

Fast, open-source static analysis tool for detecting hardcoded secrets like passwords, API keys, and tokens in git repositories, files, and stdin…

Pillage filesystems for sensitive information with Go 🔍

jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice

CLI tool that scans codebases for high-entropy lines to detect potential secrets, with customizable file extension and top-N filtering.

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

A tool for secrets management, encryption as a service, and privileged access management

We would like to request that all contributors please clone a *fresh copy* of this repository since the September 21st maintenance.