TopAlter.com

Gitleaks Alternatives

Gitleaks Alternatives

Gitleaks

Audit git repos for secrets. Gitleaks provides a way for you to find unencrypted secrets and other unwanted data types in git source code repositories. As part of it's core functionality, it provides;
Github and Gitlab support including support for bulk organization and repository owner (user) repository scans, as well as pull request scanning for use in common CI workflows.
Support for private repository scans, and repositories that require key based authentication
Output in CSV and JSON formats for consumption in other reporting tools and frameworks
Externalised configuration for environment specific customisation including regex rules
Customizable repository name, file type, commit ID, branch name and regex whitelisting to reduce false positives
High performance through the use of src-d's go-git framework
It has been successfully used in a number of different scenarios, including;

Adhoc scans of local and remote repositories by filesystem path or clone URL
Automated scans of github users and organizations (Both public and enterprise platforms)
As part of a CICD workflow to identify secrets before they make it deeper into your codebase
As part of a wider secrets auditing automation capability for git data in large environments.

Best Free Gitleaks Alternatives

If you want similar software to Gitleaks, we have a list for that. Are there Gitleaks alternatives out there? Let's find out.

AWS Lab's git-secrets

AWS Lab's git-secrets

FreeOpen SourceMacWindowsLinux

git-secrets scans commits, commit messages, and --no-ff merges to prevent adding secrets into your git repositories. If a commit, commit message, or any commit in a...

Gitrob

Gitrob

FreeOpen SourceMacWindowsLinux

Gitrob is a tool to help find potentially sensitive files pushed to public repositories on Github. Gitrob will clone repositories belonging to a user or organization...

repo-security-scanner

repo-security-scanner

FreeOpen SourceMacWindowsLinux

CLI tool that finds secrets accidentally committed to a git repo, eg passwords, private keys.

Repo-supervisor

Repo-supervisor

FreeOpen SourceMacWindowsLinux

Serverless tool that detects secrets and passwords in your pull requests - one file at a time.

truffleHog

truffleHog

FreeOpen SourceMacWindowsLinux

Searches through git repositories for secrets, digging deep into commit history and branches. This is effective at finding secrets accidentally committed.

yara4pentesters

yara4pentesters

FreeOpen SourceMacWindowsLinux

rules to identify files containing juicy information like usernames, passwords etc.

Yelp's detect-secrets

Yelp's detect-secrets

FreeOpen SourceMacWindowsLinux

detect-secrets is an aptly named module for (surprise, surprise) detecting secrets within a code base.

Upvote Comparison

Interest Trends

Gitleaks Reviews

Add your reviews & share your experience when using Gitleaks to the world. Your opinion will be useful to others who are looking for the best Gitleaks alternatives.

Copyright © 2021 TopAlter.com

Sites we Love: AnswerBun, MenuIva, UKBizDB, Sharing RPP