nowfound

Alternatives

Products that do what CyberGuard does

60% of startups leak API keys on GitHub. Find & Auto fix.

  1. 1

    Check if your secrets and API keys have leaked on GitHub.

    2023

  2. 2

    See your leaked API keys before attackers do

    Jan 2026

  3. 3

    Detect secrets in source code, public and private!

    2018

  4. 4KD

    I built this after seeing multiple teams accidentally ship API keys in their frontend code. The problem: Modern web development moves fast. You're vibe-coding, shipping features, and suddenly your AWS keys are sitting in a tag visible to anyone who opens DevTools. I've personally witnessed this happen to at least 3-4 production apps in the past year alone. KeyLeak Detector runs through your site (headless browser + network interception) and checks for 50+ types of leaked secrets: AWS/Google keys, Stripe tokens, database connection strings, LLM API keys (OpenAI, Claude, etc.), JWT…

    Nov 2025 · github.com

  5. 5
    Securelog112

    Prevent leaked secrets across code, logs, and pipelines

    2024

  6. 6E2

    Hey HN, I'm so happy to finally show you all this release after years of hard work. I posted the first version of EnvKey to HN back in 2017 (https://news.ycombinator.com/item?id=15330757), then went through YC in W18 (https://news.ycombinator.com/item?id=16569534). EnvKey is an end-to-end encrypted configuration and secrets manager. It protects your organization's API keys, encryption keys, credentials, and other secrets, and makes it easy to run servers, scripts, tests, and everything else with the latest config. It also helps you avoid duplication in your…

    2022 · v2.envkey.com

  7. 7

    Give AI access to 6754+ APIs with zero credentials exposed

    Feb 2026 · keychains.dev

  8. 8CT

    When I came across a study that traced 4.5 million fake GitHub stars, it confirmed a suspicion I’d had for a while: stars are noisy. The issue is they’re visible, they’re persuasive, and they still shape hiring decisions, VC term sheets, and dependency choices—but they say very little about actual quality. I wrote StarGuard to put that number in perspective based on my own methodology inspired with what they did and to fold a broader supply-chain check into one command-line run. It starts with the simplest raw input: every starred_at timestamp GitHub will give. It applies a…

    2025 · github.com

  9. 9KG

    Hi Hacker News! Shahar and Tal from Keep here. A few months ago, we introduced here at HN (https://news.ycombinator.com/item?id=34806482) Keep as an “open source alerting CLI” and got some interesting feedback - mainly around UI, automation, and supporting more tools. We were VERY early back then, and we understood that although the current DX around creating alerts is not great, it's not that critical and developers don’t need another tool just for that. But we did find something else. While talking to developers and devops, we found that a lot of companies use many tools…

    2023 · github.com

  10. 10

    Scan, Detect & Protect Your Supabase Data

    Jan 2026 · supaguard.pro

  11. 11IB
  12. 12

    API Key & Secret Leak Detector

    Mar 2026 · marketplace.visualstudio.com

  13. 13

    Open sourced application to detect security vulnerabilities.

    2020

  14. 14GM
  15. 15

    Audit secrets locally. No cloud. No leaks. Ever.

    Jun 2026

  16. 16WG

    For the past month, we've been monitoring GitHub's public event stream to catch spam comments and fake stars. Today, the spammers are back. Go check out the damage! You can see the spam comments and which users are posting the spam in real time. Also, here's a post we wrote about how we set it up: https://www.trytrench.com/blog/preventing-spam-and-fake-star...

    2024 · play.trytrench.com

  17. 17

    Catch exposed API keys and secrets while you browse

    Jul 2026

  18. 18

    Find exposed .env files in your GitHub repos instantly

    Apr 2026 · scan-guard-io.lovable.app

  19. 19

    Simple vulnerability detector for your github repo

    2025

  20. 20

    LeakLake🔒Monitors AI chats, detects leaks, and alerts you⚠️

    Dec 2025 · leaklake.com

  21. 21PS

    Hey HN, it's Farrukh and Umar. We're building listen.dev–a tool for proactive security monitoring in GitHub Actions to secure software releases from supply chain threats. Why we built this: As friends and collaborators for over a decade, we've been working on various startup ideas in dev tools and infrastructure. In 2017, while building an ML ops toolkit on Kubernetes, we got hacked. During a pilot with a fintech customer, our cluster became victim to a crypto-jacking attack. As it turned out, a dependency in our container base image contained malware (a Monero miner) which triggered inside…

    2024

  22. 22

    Scan your repo and get secure code in 1 click.

    May 2026 · prev-ent.com

  23. 23

    Detect hardcoded secrets in VS Code before you commit them

    Mar 2026 · marketplace.visualstudio.com

  24. 24IB

    I built a GitHub app that detects it in pull requests, notifies or blocks them. Alongside it, I published a Semgrep ruleset for any stage of the CI/CD. I started this after getting frustrated by all the FUD around malicious code - lots of noise, little effort to solve it. Having said that, it's still a major attack vector - a stored RCE, with the codebase itself as the sink. Feedback is appreciated. The app, PRevent - https://github.com/apiiro/PRevent The ruleset: https://github.com/apiiro/malicious-code-ruleset The research:…

    2025 · github.com

Ranked by how close each launch is in meaning, then by votes. Refine with a description →