
pillager
Pillage filesystems for sensitive information with Go 🔍

Pillage filesystems for sensitive information with Go 🔍

「🔑」A tool used to hunt down API key leaks in JS files and pages

A vulnerability scanner for container images and filesystems

A tool for secrets management, encryption as a service, and privileged access management

A tool to scan Kubernetes cluster for risky permissions

A terminal based tool for managing secrets with both tui and cli support

Personal Access Token (PAT) recon tool for bug bounty hunters, pentesters & red teams

Secure CLI tool for managing environment secrets using native OS credential stores (macOS Keychain, Linux Secret Service, Windows Credential Manager)

Fast, open-source static analysis tool for detecting hardcoded secrets like passwords, API keys, and tokens in git repositories, files, and stdin…

Simple and flexible tool for managing secrets

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

Static analysis tool for CI/CD systems that detects and fixes security issues in GitHub Actions, Dependabot, and pre-commit configurations, including…

Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

A tool to capture all the git secrets by leveraging multiple open source git searching tools

A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.

OSINT reconnaissance tool for network discovery, subdomain enumeration, IP enrichment, and secret detection via certificate logs, Shodan, and GitHub…

CLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and…