truffleHog is a Python-based tool to search Git for high entropy strings, digging deep into commit history and branches. This is effective at finding secrets accidentally committed.
truffleHog previously functioned by running entropy checks on git diffs. This functionality still exists, but high signal regex checks have been added, and the ability to surpress entropy checking has also been added.
truffleHog –regex –entropy=False https://github.com/dxa4481/truffleHog.git
truffleHog will go through the entire commit history of each branch, and check each diff from each commit, and check for secrets.