
TRUFFLEHOG ANALYZE
Exposed secrets are IAM security risks, not just static code issues.

Identify the AWS identity
See the AWS non-human identity behind a leaked credential, including the associated IAM user or role, so you know exactly what you're investigating.
Assess effective permissions
See the effective permissions granted to a leaked AWS credential so you can understand what it can actually access, not just the IAM policies attached to it.


Trace privilege paths
Analyze direct and single-hop assumable roles to understand how far a compromised credential could extend its access across your AWS environment.
See Analyze for AWS in action
Analyze for SaaS
Learn more →
Analyze for GCP
Learn more →



