discovered 03 Aug 2026
ghmon
→ View on GitHubghmon is a command-line security scanning tool designed to identify leaked secrets in GitHub and GitLab repositories by utilizing TruffleHog for in-depth scanning. Its primary use case is for DevOps and security teams to maintain secure code practices through automated discovery of repositories, continuous monitoring, and multi-platform notifications. Notable features include intelligent filtering of findings, automated token rotation, and comprehensive logging capabilities, making it suitable for both one-time scans and ongoing security assessments.