review-trufflehog

Community

Triages Trufflehog secrets to confirm exposures.

Authorchrismcmacken
Version1.0.0
Installs0

System Documentation

What problem does it solve?

This Skill streamlines the review and triage of Trufflehog secret detections, helping security teams quickly identify real credential exposures, filter out test/demo data, and prioritize verified findings with contextual references to source code.

Core Features & Use Cases

  • Triage & verification: Filter findings by verification status and highlight confirmed exposures to accelerate remediation.
  • Context-rich review: Link findings to repository files and commit history to support audits and incident response.
  • Organization-wide triage: Efficiently review Trufflehog outputs across multiple org repositories, enabling scalable threat hunts.

Quick Start

  • Run the extraction scripts to summarize findings: ./scripts/extract-trufflehog-findings.sh <org-name> to get an org-wide summary.
  • Review verified findings first: ./scripts/extract-trufflehog-findings.sh <org-name> verified.
  • Drill down by repository: ./scripts/extract-trufflehog-findings.sh <org-name> summary <repo> or count to gauge scope.

Dependency Matrix

Required Modules

None required

Components

scripts

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: review-trufflehog
Download link: https://github.com/chrismcmacken/bounty-hunter/archive/main.zip#review-trufflehog

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 223,000+ vetted skills library on demand.