Secrets In Git History

Mine GitHub, GitLab and git history for identities, infrastructure and leaked credentials using commit author emails, GitHub code search, the commit .patch endpoint, trufflehog, gitleaks, git log pickaxe and full-ref history scans. Use when investigating a developer or organisation on GitHub, finding leaked API keys, AWS keys or tokens in code, enumerating org members and their personal repos, or recovering secrets deleted from HEAD but still present in history or forks. Applies to software supply-chain risk, credential exposure response, M&A technical diligence, and insider-threat investigation. Reference at useosint.com/skills/secrets-in-git-history.

useosint 9a4a497 3 files · 31.2 KB Updated

File contents

useosint/skills/tree/main/skills/secrets-in-git-history commit 9a4a497b4d

Frequently asked questions

npx skillmds add useosint/secrets-in-git-history