ggscout
Stop assuming your secrets are safe—make them visible, governed, and secure.
ggscout
by GitGuardian
It helps you detect, prioritize, and even push secrets securely into vaults. It never exports plaintext secrets—only hashed fingerprints and metadata.
Download the binary within a docker image
Use the following command line to deploy GitGuardian Scout on a Docker image.
Download the helm chart
Use the following command line to deploy GitGuardian Scout on a Docker image.
Then install the scout, with a value file:
GitGuardian’s annual report on the number of secrets that leaked on public GitHub and their impact on code security.
Change your Secrets Game with ggscout, your secrets manager's manager. Secure your vaults, prevent leaks, and achieve proactive secrets governance.
We look at the essential capabilities and features to take into account when choosing a secrets detection solution.
Yes, optionally. You can enable "push to vault" mode to help developers remediate and re-vault exposed secrets.
Yes. You can run a fetch-only mode to generate a JSON report locally for audit or compliance review.
Yes, ggscout is free under certain circumstances (e.g., in a free plan or for testing without an enterprise license).
It's not fully open source yet, but GitGuardian aims for it. Currently, the code source is shared with customers upon request