SonarQube is an open-source platform for continuous inspection of code quality to perform automatic reviews with static analysis of code to detect...
Free and paid plans available
β Update queued β the AI is re-ranking this list. The page will refresh shortly.
This page is already up to date.
TruffleHog scans repositories, commits, filesystems, and other data sources for exposed secrets and verifies whether discovered credentials are active. It serves developers and security teams that want focused, high-signal credential detection with an open-source CLI.
SonarQube is an open-source platform for continuous inspection of code quality to perform automatic reviews with static analysis of code to detect...
Free and paid plans available
GitGuardian is a cybersecurity company specialized in preventing data leaks in real-time from code repositories.
Contact for pricing
Snyk is a developer-first security company that helps software-driven businesses develop fast and stay secure.
Contact for pricing
Checkmarx is a leading provider of application security solutions. It offers static application security testing, software composition analysis, and other security testing...
Custom pricing based on requirements
Spectral is a developer-focused application security platform for scanning source code, infrastructure-as-code, dependencies, and secrets. It is designed for engineering and security...
Custom pricing
Semgrep is an application security platform centered on static analysis, software composition analysis, and secrets detection. It serves development and security teams...
Freemium, paid plans vary by team size
Your feedback helps us improve the AI rankings.
β Thanks for your feedback!
Suggest a product and our AI will verify it's a real alternative to TruffleHog before adding it to the list.