git-all-secrets is a security tool that aggregates multiple open source Git scanning utilities to identify secrets stored in Git repositories. The tool combines the capabilities of various Git security scanners including Git Secrets, GitLeaks, and GitGuardian to provide comprehensive secret detection across different storage locations such as environment variables and files. It automates the process of running multiple Git scanning tools simultaneously, allowing security professionals to perform thorough audits of code repositories for exposed credentials, API keys, tokens, and other sensitive information. The tool is designed to support security audits and compliance verification processes by providing a unified approach to secret detection across Git repositories.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Grafeas is an API specification for managing and auditing metadata about software resources across the software supply chain.
APKiD is a tool that identifies compilers, packers, obfuscators, and other weird stuff in APK files.
A PHP port of Rack::Honeypot, a spam trap that detects and blocks spambots
A brute-force protection middleware for express routes that rate-limits incoming requests.
GuardDog is a CLI tool that identifies malicious PyPI and npm packages using heuristics-based analysis of source code and metadata.
RiskInDroid is a machine learning-based tool that performs quantitative risk analysis of Android applications by reverse engineering bytecode and analyzing permission usage to generate numeric risk scores.
An open-source tool that automates the detection and analysis of DLL hijacking vulnerabilities in Windows applications, providing detailed reports and remediation guidance.
A technology lookup and lead generation tool that identifies the technology stack of any website and provides features for market research, competitor analysis, and data enrichment.
A Nuxt 3 security module that automatically implements OWASP security patterns through HTTP headers, middleware, and various protection mechanisms including CSP, XSS validation, CORS, and CSRF protection.