Unearth your secrets
TruffleHog™ is an open-source secret scanning engine that detects and helps resolve exposed secrets across your entire tech stack.
Millions of leaked secrets
Millions of secrets, including API keys, passwords, and tokens, are frequently leaking from sources like source code, chat systems, support tickets, and more, underscoring the need for robust secret leak detection.
Read our research
TruffleHog digs deep
TruffleHog scans for sensitive credentials beyond the source code to include hidden content, deleted code, and version history from commonly used tools across your company.
Over 250K daily runs by developers and security teams
TruffleHog is a widely-used open-source security project with over 250,000 daily updates from our update server by developers and security teams. It has over 15,000 GitHub stars, making it a go-to tool for leading organizations across the globe.
250K+
Daily runs
15K+
GitHub stars