trufflehog

SkillSecurity

Lets your agent scan git repos and files for leaked passwords and API keys using TruffleHog.

Available today. Use it from your connected AI after setup.

Add ahel to your AI once: Claude, ChatGPT, Cursor, Claude Code or Codex. Then ask it to use this.

Then ask your AI: use the trufflehog skill

About this skill

🛡⚔️AI-Powered Penetration Testing Framework with automated vulnerability scanning, multi-agent system, and compliance reporting🛡⚔️

What this skill tells your AI

The instructions your AI receives, as published by shadd0wtaka/zen-ai-pentest in skills/tool-trufflehog/SKILL.md and read by ahel’s review.

TruffleHog Integration - Secrets Detection for Zen-AI-Pentest

Category: scanning — Security Code & Container Scanning

Overview

TruffleHog Integration - Secrets Detection for Zen-AI-Pentest

This module provides a comprehensive TruffleHog wrapper with:

  • Git repository scanning
  • File/directory scanning
  • Custom regex patterns
  • Verified secrets only option
  • Multiple output formats
  • Result parsing and normalization

Author: Zen-AI-Pentest Team License: MIT

Usage in Zen-Ai-Pentest

# Auto-registered in tool_registry under "scanning"
result = await tool_orchestrator.execute("trufflehog_integration", target="example.com")

CLI Equivalent

trufflehog --help

Agent Integration

  • CLI: deep-recon --tool trufflehog_integration --target example.com
  • Agent persona: auto-selected from category scanning
  • MCP: zen-agents_agent_run agent_type=scanning tool=trufflehog_integration
  • API: POST /tools/execute with {"tool_name": "trufflehog_integration", "target": "example.com"}

Signals

GitHub stars
469
Forks
81
Last commit
Sep 2026
Advanced
Item type
skill
Key
tool-trufflehog
Source
github.com/shadd0wtaka/zen-ai-pentest