force-push-scanner

The premium Open Source alternative to TruffleHog

🎯 Best for:Security teams auditing for accidental credential leaks in modified Git history.
Visit WebsiteCompare with TruffleHog
0.5k
Stars
AGPL-3.0License

What is force-push-scanner?

A specialized security scanner that identifies leaked secrets in commits that have been force-pushed or deleted on GitHub. It utilizes GH Archive data to locate dangling objects that remain in GitHub's infrastructure despite history rewrites.

Tech Stack
PythonDevOps & CI/CD

Why force-push-scanner?

  • Finds 'unfindable' leaks
  • Leverages public archives
  • Automated scanning

Limitations

  • High false positive potential
  • Requires GH Archive processing
  • CLI only
2/28/2026
Last Update
35
Forks
6
Issues
AGPL-3.0
License
Financial Leak Detected

Stop the "SaaS Tax"

Your team could be burning cash. Switching to force-push-scanner instantly boosts your runway.

Competitor Cost
-$1,440
/ year (est. based on TruffleHog)
Self-Hosted
$0
/ year
Team Size10 Users
150+
SAVE 100%

Community Discussion

Comments