GitHub Launches Free Secret Risk Assessment Tool

By

The tool shows secret exposure across your organization.

GitHub has launched a free secret risk assessment tool, as part of recent changes to its Advanced Security offerings.

The free tool, which is now available in the Security tab, “gives admins and developers a clear view of where secrets are exposed across their organization” and offers actionable steps to better secure their environments.

The company has also unbundled GitHub Advanced Security to make the following tools available as standalone products:

  • GitHub Secret Protection: Detects and prevents secret leaks before they happen using push protection, secret scanning, AI-powered detection with low false-positive rate, security insights, and more. Available at $19/month per active committer.
  • GitHub Code Security: Helps identify and remediate vulnerabilities faster with code scanning, Copilot Autofix, security campaigns, Dependency Review Action, and more. Available at $30/month per active committer.

GitHub Team customers can purchase these products without a GitHub Enterprise subscription.

Learn more at GitHub.
 
 

 
 
 

04/08/2025

Related content

  • News for Admins
    In the news: GitGuardian Introduces NHI Governance; IBM Launches LinuxONE 5; OpenSSF Offers Free Course to Help Navigate EU Cyber Resilience Act; Rapid7 Announces MDR for Enterprise; Infoblox and Google Cloud Partner on DNS Security Solutions; IBM z17 Mainframe Engineered for AI; 2025 Open Source Job Survey Report; GitHub Launches Free Secret Risk Assessment Tool; Sonatype Offers End-to-End AI Software Composition Analysis; and Unmanaged Open Source Components Pose Serious Risks, Says Black Duck Report.
  • News for Admins
    In the news: US Agencies Issue Quantum-Readiness Recommendations; Bitwarden Secrets Manager; IBM X-Force Releases Detection and Response Framework for Managed File Transfers; National Strategy to Expand US Cyber Workforce; SEC Adopts New Rules for Disclosure of Cybersecurity Incidents; Canonical Announces Real-Time Ubuntu for Intel Core; EU-US Data Privacy Framework Ensures Safe Data Transfers; IEEE Releases New Standard for LiFi Communications; EU Health Sector Security Risks; and JupyterLab 4.0.
  • Efficient password management in distributed teams
    Team members often need certain information to authenticate against servers. You don't want to save this secret data in plain text, but you don't want to retype it every time, either. How can you share these secrets?
  • NIST Releases Open Source Tool for Assessing Risk of AI Models
  • Full-spectrum security scanner
    We take a close look at the Trivy scanners for vulnerabilities, misconfigurations, and secrets with Ubuntu-centric guidance on performance tuning, security configurations, and scalability across Linux distributions.
comments powered by Disqus
Subscribe to our ADMIN Newsletters
Subscribe to our Linux Newsletters
Find Linux and Open Source Jobs



Support Our Work

ADMIN content is made possible with support from readers like you. Please consider contributing when you've found an article to be beneficial.

Learn More”>
	</a>

<hr>		    
			</div>
		    		</div>

		<div class=