Learn how GitGuardian helps development and security teams detect secrets like API keys and other credentials leaked on GitHub or exposed in internal repositories.
Detect intruders in your software supply chain. Attackers will always find a way to compromise your software supply chain, but with honeytokens, you can stay one step ahead. Deploy at scale, monitor for unauthorized use, and detect intrusions before it's too late. With Honeytoken, you'll know where, who, and how they're trying to access your confidential data.
GitGuardian's internal repository monitoring product integrates natively with your VCS (Version Control System), hence on the server side. This is done through a GitHub app or a webhook for GitLab, Bitbucket and Azure repos. GitGuardian "listens" to all the events reaching the post-receive hook stage.
GitGuardian Internal Monitoring (GIM) and GitGuardian Public Monitoring (GPM)
GitGuardian monitors GitHub round the clock for your secrets and sensitive data. We catch the leaks, you stop the intrusions.
Scan and fix hardcoded secrets in source code, CI/CD pipelines, and developer productivity tools – with GitGuardian’s code security platform.
The secret to stop hardcoded secrets. Take GitGuardian’s secrets detection engine to the command line with ggshield. GGshield is a CLI application that runs in your local environment or in a CI environment to help you detect more than 400+ types of secrets.
everything in business Plan, plus: Self-hosted deployment Unlimited teams Unlimited API quota calls Scan Git repository up to 60Gb Unlimited custom detectors Dedicated support channel
free Plan also includes: 5 honeytokens Up to 25 devs Unlimited real-time scanning Up to 500 historical scan detection
everything in free Plan, plus: Up to 20 teams Unlimited contributing developers Remediation playbooks Scan developers collaboration tools