Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. Secrets Detection

Secrets Detection

Build an evaluation questionnaire →

Analyst coverage

Public fact of coverage — not proprietary ratings
📊

No analyst coverage recorded yet

Integration ecosystemUI-25 — integration network graphEvery Secrets Detection vendor with a detected integration, plus the vendors they integrate with (any category) — integrations are mostly cross-category in practice, so this shows the real neighborhood, not just same-category edges. Secrets Detection vendors are highlighted; connected vendors from other categories are dimmer. Circle size = how many integrations that vendor has. Sourced from each vendor's own published integration/partner pages (see UI-12).

121 edges

CVE exposure in Secrets DetectionUI-71 — vendor/CVE treemapEvery Secrets Detection vendor with at least one tracked CVE, sized by count — same data and coloring as the full-catalog version on the Browse page, scoped to just this category.

RSS ⇢

5 vendors with at least one tracked CVE, sized by how many. Color = relative volume.About CVE trackingSourced from the public NVD database, matched by vendor name (same data as each vendor's own CVE list). Tracking is capped at 100 CVEs per vendor as a scan guard — no vendor has hit that cap yet. Vendor-level only, not per-product/version — always check the linked NVD record before drawing conclusions about a specific product.

Datadog28 CVEsCheckmarx6 CVEsSpectral4 CVEsZeroPath2 CVEsTruffle Security1 CVE

Security posture in Secrets DetectionUI-108 — category security rollupA category-level rollup of the same per-vendor signals shown on each vendor's own page (UI-90/99/102): security-header checks against each vendor's own homepage, and keyword-matched compliance certifications. Coverage is partial — only vendors checked so far are counted, not the whole category — so this describes what's known, not a claim about every vendor in Secrets Detection.

3/5
checked vendors have a strong security-header posture (3+/5)
0
vendors with a disclosed certification
5/14
vendors in this category checked so far

Vendors (14)

⚖ Compare vendors side-by-side

Pick 2–4 vendors, then compare their products and neutral strengths/gaps.

0/4 selected
  • Apiiro15 productsAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    Application security posture management.
    Apiiro Secrets Security
  • BitPatrol1 productAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    AI-powered secret detection tool for real-time credential scanning in code
    BitPatrol
  • Checkmarx17 productsAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    Application security testing platform.
    Checkmarx Secrets Detection
  • Corgea1 productAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    Detects exposed API keys, tokens, credentials & PII in code repositories
    Corgea Secret Scanning
  • Cycode12 productsAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    Application security posture management and software supply chain security.
    Cycode Secrets Detection and Scanning
  • Datadog11 productsAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    Runtime protection for web apps and APIs against attacks and threats
    Datadog Code Security Secret Scanning
  • GitGuardian6 productsAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    Secrets detection and non-human identity security.
    GitGuardian Non-Human Identity security
  • Infisical1 productAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    Continuous secret scanning and leak detection tool with precommit checks
    Infisical Radar
  • iScan.today1 productAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    Scans repositories for exposed secrets, API keys, and credentials for bug bounty
    iScan Advanced Scanning Tool
  • Opsera2 productsAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    DevSecOps platform for unified tool integration, security, and governance
    Opsera GitCustodian
  • Qwiet4 productsAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    AI-powered SAST tool for scanning code vulnerabilities with low false positives
    Qwiet AI Secrets Detection
  • Spectral3 productsAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    SCA tool for detecting OSS vulnerabilities in code and dependencies
    Spectral Ops Container ScanningSpectral Stop leaks at the source!
  • Truffle Security6 productsAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    Detects exposed API keys and credentials across multiple cloud services
    DetectorsTruffle Security AnalyzersTruffleHog AnalyzeTruffleHog EnterpriseTruffleHog Forager
  • ZeroPath8 productsAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Unclaimed
    AI-powered policy engine for defining and enforcing custom code security rules
    Secrets Scanner