Scan files for secrets (API Keys, database credentials).
GitGuardian's API provides secret detection and remediation across software development workflows, including scanning content for policy breaks and managing secret incidents once detected. It supports honeytoken creation and deployment for detecting unauthorized access, IP allowlisting, and health checks on connected sources and repositories.
The API covers incident management workflows including assigning, resolving, ignoring, reopening, sharing, and tracking remediation status of detected secrets, along with retrieving the scope of impact and any public leak locations. It includes team and member management with SCIM support for provisioning users and groups, permission checks, and access control on incidents and resources. Authentication is available via OAuth2/OIDC and API tokens, including JWT creation.
The API is intended for organizations integrating automated secret-scanning and incident-response capabilities into their development pipelines and identity systems. The base URL is https://api.gitguardian.com/v1 or https://api.eu1.gitguardian.com/v1 depending on region, with all data exchanged as JSON and timestamps in ISO-8601 format.
It lets developers scan code and text content for secrets and policy breaks, and manage the resulting incidents programmatically.
The API supports API tokens as well as OAuth2/OIDC, including JWT creation and dynamic client registration.
All data is sent and received as JSON by default, with ISO-8601 compliant timestamps.
Yes, the base URL is https://api.gitguardian.com/v1 or https://api.eu1.gitguardian.com/v1 depending on location.
Yes, it provides SCIM endpoints for managing users and groups, plus team, invitation, and permission management.
Show your product to thousands of developers
· 100k monthly pageviews
· 7k newsletter subscribers
Fraud detection API offering highly accurate browser fingerprinting.
Screen order information using AI to detect frauds.
Searchable attack surface database of the entire internet.
Query IPs in the GreyNoise dataset and retrieve a subset of the full IP context data.
The industry’s first hacker API that helps increase productivity towards creative bug bounty hunting.
Passwords which have previously been exposed in data breaches.