GitGuardian
6.5K posts

GitGuardian
@GitGuardian
The end-to-end NHI security platform for enterprises. Powerful Secrets detection, remediation and NHI Governance . 🏆 #1 App on GitHub.
The World Katılım Nisan 2017
577 Takip Edilen6K Takipçiler

first time getting an email from @GitGuardian couldn't help but notice the "I have fixed the repo" button in dark-mode the text is imperceptible .

English

@Microbuilderco in fact this is not entirely true... Yes GitGuardian is serving all Enterprise needs and can scale big, but it is also available for free for individual developers and teams below 25! Enjoy!
English

Indie Signal Roundup (March 6th):
5 pain points worth building this week 🧵
#buildinpublic #indiehackers
English

@intellisoftalpn @SapphireVC Yes you are right. GitGuardian Platform
does the historical scan and the real time scan both for public repos and internal ones.
English

@GitGuardian @SapphireVC ggshield is great for new commits 👍
But 70% of leaks live in existing history — pre-commit can't fix what's already pushed.
Real coverage needs:
• pre-commit (ggshield) for prevention
• full-history audit for cleanup
Both layers matter. 🔒
English
GitGuardian retweetledi

Congrats to Eric Fourrier & the @GitGuardian team on the $50M Series C! 👏
As companies rely more on software & AI to run everyday operations, the number of non-human logins, such as service accounts & AI agents, has grown rapidly. GitGuardian is meeting this moment by pushing security deeper into the development workflow, helping teams catch exposed secrets early & manage access as systems scale.
We’re proud to continue supporting GitGuardian as they grow globally & help enterprises protect the software that runs their business.
Read more: blog.gitguardian.com/series-c-annou…

English

@intellisoftalpn @SapphireVC Totally agree and this is why you can use ggshield to block right at the start when you code!
English

@SapphireVC @GitGuardian Congrats on $50M! Well deserved.
But "early" ≠ "pre-commit".
70% of leaks live in Git history 2+ years — because scanning happens AFTER the push.
Next frontier: block secrets in IDE before commit.
Detect ≠ prevent. 🔒
English

@grok @Polymarket So what is your recommendation on how to prepare or deal with this situation?
English
GitGuardian retweetledi

Introducing the sponsors making MCP Connect Day possible!
🥇 Gold: @daytonaio
🥈 Silver: @apify @blocks @datadoghq @gitguardian @linkup_platform Mirakl
🥉 Bronze: @awscloud @data_dome @dusthq @leboncointech @scaleway @theodo @workos
Feb 5 in Paris 👉 luma.com/bj6kgvxh

English
GitGuardian retweetledi

The next OWASP London Chapter in-person Meetup will take place on January 21st, 2026, kindly sponsored by @nuaware_tech with raffle prizes kindly sponsored by @GitGuardian and @Docker
Register to attend this event here:
👇
meetup.com/owasp-london/e…
English
GitGuardian retweetledi

.@GitGuardian @svrn_ai @orcasec @silverfort join @JillMalandrino on @Nasdaq #TradeTalks to discuss the cybersecurity challenges with operating non-human identities. twitter.com/i/broadcasts/1…
English
GitGuardian retweetledi

@GitGuardian recently announced its new channel partner program to scale non-human identity security. As a proud partner, we could not be more enthusiastic about this opportunity. @CesarEnciso69

English
GitGuardian retweetledi

As for the Shai-Hulud 2.0 npm worm, it gets worse over time. #ShaiHulud supply chain attack threat actors exfiltrated stolen credentials directly to #GitHub repositories created with compromised tokens. HT @guedou of @GitGuardian. cybersec.gitguardian.com/s/shai-hulud-2…
English
GitGuardian retweetledi

Security teams need to stop being the department of "no" and start being the department of "how." Hear more from @GitGuardian Developer Advocate Dwayne McDaniel in this RSAC Podcast. spr.ly/60157m4mH
English
GitGuardian retweetledi

Very cool analysis by @GitGuardian, adding extra insights into the run-up to the attack:
blog.gitguardian.com/shai-hulud-2/
English
GitGuardian retweetledi

As cyber threats grow more sophisticated, organizations need innovative defenses to stay protected.
That’s why we’re proud to see 3 of our portfolio companies recognized on @Fortune’s Cyber 60 list in the growth stage category. Congratulations to @GitGuardian, @HuntressLabs, & @cyera_io! 👏
Full list here: fortune.com/ranking/cyber/

English

Think your Artifactory token is safe in that Jenkinsfile?
So did the last company... until their CI/CD pipeline became an attack vector.
Read-only tokens can still write your downfall. devopsdigest.com/the-hidden-dan…
#DevOps #Security
English

🔓 Artifactory tokens: the skeleton keys to your kingdom.
Leaked one? Congrats, you just invited attackers to your production party.
Read-only? More like read-everything.
devopsdigest.com/the-hidden-dan…
#SupplyChainSecurity #DevSecOps
English

🚢 15M Docker images scanned.
🔐 100K valid secrets found.
😱 7K+ active AWS keys exposed.
🏭 Fortune 500 companies affected.
🧪 Secrets in ENV, configs, layers.
🛡️ Time to scan your containers.
Read more : s.gitguardian.com/eede3e
English
GitGuardian retweetledi

Secrets #scanning isn't just about monitoring code repositories like GitHub. The 2025 GitGuardian report reveals a surge in hardcoded #secrets, with 23.7M added in 2024. Critical exposures also occur in collaboration tools like Slack and Jira☝️🤖
buff.ly/2lxxh6e

English

🚨 NEW: Our State of Secrets Sprawl 2025 Report has dropped!
We analyzed GitHub, Docker Hub, and even AI-assisted coding—the results will surprise you.
Get the full report: gitguardian.com/state-of-secre…
#AppSec #CyberSecurity #SecretsManagement

English

Security isn’t just about tech—it’s about people.
Kayssar Daher shares why building relationships in a company is just as critical as patching vulnerabilities. 🔑
🎧 Listen to the latest Security Repo Podcast! : youtu.be/qUEameZsDr4
#SecurityLeadership #DevSecOps #AppSec

YouTube

English
