Skip to main content
DevTools24

シークレットスキャナー

コード内の漏洩したシークレットと認証情報をスキャンします。コミット前にAWSキー、GitHubトークン、APIキーなどを検出。

All scanning happens locally in your browser
Detected Secret Types:
AWS Access KeyAWS Secret KeyGitHub TokenGitHub Personal Access Token (Classic)Slack TokenSlack WebhookGoogle API KeyStripe Secret KeyStripe Publishable KeyStripe Test KeyTwilio API KeySendGrid API KeyMailchimp API Keynpm TokenPyPI TokenHeroku API KeyPrivate KeyPassword in URL
Note: This scanner uses pattern matching and may produce false positives. Always review detected items manually. Placeholders and environment variables are typically filtered out.

Secret Detection - 技術的な詳細

Accidentally committing secrets to version control is a common security issue. Secrets include API keys, database passwords, OAuth tokens, and private keys. Use pre-commit hooks and secret scanning tools to prevent leaks.

コマンドラインでの代替方法

# Use git-secrets or gitleaks\ngitleaks detect --source .\n\n# Pre-commit hook example\npre-commit install

参照

公式仕様を見る