Stop Leaking Secrets Before They Hit Git
SecretSentry catches API keys, tokens, and credentials in real time as you type.
Zero config. Works offline. Catches what .gitignore can't.
const config = {
apiKey: "sk_live_abc123...def456"⚠ Stripe Live Key
dbHost: "localhost",
port: 3000,
}; Everything You Need to Stop Secret Leaks
From solo developers to enterprise teams, SecretSentry scales with your security needs.
Real-Time Detection
Catches secrets the moment you type them. No save required, no git hooks to configure.
800+ Secret Patterns
Detects AWS keys, GitHub tokens, Stripe keys, database URLs, and hundreds more out of the box.
Works Offline
All detection happens locally on your machine. Your code never leaves your editor.
Git History Scanning
Scan your entire git history for secrets that were committed in the past. Clean up before it's too late.
Team Dashboard
Centralized view of all findings across your organization. Track, triage, and enforce policies.
Policy Enforcement
Block commits containing secrets, enforce minimum severity thresholds, and set org-wide allowlists.
How It Works
Get protected in under 30 seconds. No sign-up required for the free tier.
Install the Extension
One click install from the marketplace. Works with VS Code, Cursor, Windsurf, Trae, and VSCodium. No configuration needed.
Write Code as Usual
SecretSentry monitors your editor in real time. When it detects a secret, you get an inline warning instantly.
Fix Before You Commit
Follow the guided remediation playbook to move the secret to an env file or vault. Never push a secret again.
Works With Your Editor
SecretSentry runs on VS Code and every major fork. One extension, every editor.
VS Code
Full support via the Visual Studio Marketplace.
Cursor
AI-first editor built on VS Code. Fully compatible.
Windsurf
Agentic IDE by Codeium. Install directly from the extension panel.
Trae
Collaborative AI coding editor. Full extension support.
VSCodium
Open-source VS Code without telemetry. Install via Open VSX.
Any VS Code Fork
Works with any editor built on the VS Code extension API.
Simple, Transparent Pricing
Start free. Upgrade when you need more.
Free
For individual developers getting started.
- 10 secret pattern detectors
- Real-time inline detection
- Basic remediation playbooks
- Works fully offline
Pro
For developers who want full coverage.
- 800+ secret pattern detectors
- Git history scanning
- Full workspace scanning
- Pre-commit hook enforcement
- Full remediation playbooks
- Compliance export
- Custom ignore rules
Team
For teams that need centralized control.
- Everything in Pro, plus:
- Team dashboard & analytics
- Policy enforcement
- Vault integration
- Audit trail
- Priority support
Need enterprise features like SSO/SAML? Contact us.