whispers

The premium Open Source alternative to TruffleHog

🎯 Best for:Scanning configuration files and structured data for sensitive keys.
Visit WebsiteCompare with TruffleHog
0.5k
Stars
Apache-2.0License

What is whispers?

Replaces manual inspection of configuration files like YAML and JSON for hardcoded credentials. It utilizes a pluggable rule engine to detect secrets in structured text formats.

Tech Stack
PythonTesting & QA

Why whispers?

  • Supports many file formats
  • Low false positive rate
  • Easy to integrate in scripts

Limitations

  • No native GUI
  • Requires Python environment
  • Static analysis only
2/24/2026
Last Update
71
Forks
10
Issues
Apache-2.0
License
Financial Leak Detected

Stop the "SaaS Tax"

Your team could be burning cash. Switching to whispers instantly boosts your runway.

Competitor Cost
-$1,440
/ year (est. based on TruffleHog)
Self-Hosted
$0
/ year
Team Size10 Users
150+
SAVE 100%

Community Discussion

Comments