Secrets Detection by GitGuardian stops hardcoded secrets and prevents secrets leaks. It automates the detection and remediation of hardcoded secrets across the software supply chain, including source control, CI/CD pipelines, and infrastructure-as-code. GitGuardian's detection engine supports 350+ API providers, database connection strings, SMTP credentials, and certificates. It captures JWT secrets, bearer tokens, username/password pairs, and high-entropy patterns. GitGuardian performs contextual analysis of surrounding code to discard false positives and weak matches, and checks the validity of detected secrets with non-intrusive HTTP calls to the host when possible. It provides high precision detection with a 91% True Positive Rate (TPR) and groups multiple instances of the same incident in one alert. GitGuardian's secrets detection engine supports 420+ types of secrets with high accuracy and performs validity checks for 240+ exposed secrets. It also supports 14+ types of generic secrets and performs entropy checks to identify them. GitGuardian's secrets detection engine can be extended with custom patterns defined by the user. Detectors can be activated or deactivated from the UI in workspace settings. GitGuardian's secrets detection engine scans local Git repositories, GitHub, GitHub Enterprise, GitLab, Azure DevOps, and Bitbucket Server/Data Center. It also supports scanning Docker images, Slack, Jira, Confluence, and Microsoft Teams. GitGuardian's secrets detection engine integrates with SIEM, ITSM, ticketing systems, messaging apps, or custom webhooks. It provides detailed activity logs and audit logs to retrace an incident's timeline. GitGuardian's secrets detection engine is available as SaaS or on-premises and is fully compatible with any SAML 2.0 provider.