GitGuardian

RATING:

4.8

(36)

About GitGuardian

GitGuardian, founded in 2017 by Jérémy Thomas and Eric Fourrier, has rapidly emerged as the leader in automated secrets detection and is now focused on providing a comprehensive code security platform. The company has raised a $56M total investment to date from Eurazeo, Sapphire, Balderton, and notable tech entrepreneurs like Scott Chacon, co-founder of GitHub, and Solomon Hykes, co-founder of Docker. GitGuardian helps organizations detect and fix vulnerabilities in source code at every step of the software development lifecycle. With GitGuardian’s policy engine, security teams can monitor and enforce rules across all their VCS, DevOps tools, and infrastructure-as-code configurations. GitGuardian Internal Monitoring is an automated secrets detection and remediation pl...

Awards and Recognition

FrontRunner 2023
Software Advice's FrontRunners report ranks top products based on user reviews, which helps businesses find the right software.

GitGuardian Pricing

GitGuardian Internal Monitoring price a yearly fee based on the number of developers included in the surveillance perimeter. The subscription is free for teams below 25 developers. Above 25 developers the price is 17$ per month per developer included in the surveillance perimeter.

Free trial: 

Available

Free version: 

Available

GitGuardian Analytics
Slide 1 of 2

GitGuardian Reviews

Overall Rating

4.8

Ratings Breakdown

Secondary Ratings

Ease-of-use

4.5

Customer Support

4.5

Value for money

4.5

Functionality

5

Most Helpful Reviews for GitGuardian

1 - 5 of 36 Reviews

User Profile

Isalanya

Verified reviewer

Computer Software, 11-50 employees

Used daily for less than 2 years

Review Source: Capterra
This reviewer was invited by us to submit an honest review and offered a nominal incentive as a thank you.

OVERALL RATING:

5

EASE OF USE

5

FUNCTIONALITY

5

Reviewed November 2022

Keep your codes and software safe with GitGuardian

Software that monitors my code for security purposes!! What more as a developer would i need than some software which can alert me in case of any security issues with my code!

PROS

First of all a really great UI. Very simple and beautiful dashboard.The emails which keep me notified in case of any confidential credentials i may leak in my codes keep my codes and software safe and also help me realize where the leak is.

CONS

I haven't really found any negative sides while using GitGuardian, it has really been a useful software and can't complain about it.

Fabio

Entertainment, 11-50 employees

Used daily for less than 6 months

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

4

EASE OF USE

4

VALUE FOR MONEY

5

CUSTOMER SUPPORT

4

FUNCTIONALITY

4

Reviewed June 2022

Fit to purpose to our needs / Very little I need to admin

GitGuardian is now actively included in our core CI/CD pipeline. Setup was very easy and, and the time I need now to admin it is close to zero. After the initial adoption, "avoiding secrets in first instance" is now part of our standard practice. I would say GitGuardian is now our insurance that secrets are not disclosed inadvertently.

PROS

Easy to install. I mean, very easy! I have followed the "Quick-Start" guide, it took me about 30 mins. and when I read "Start Remediating" I thought it was the time to figure out how to adapt to our own environment and I have spent a couple of hours to set-up a manual/parallel integration that was totally unnecessary. I like the remediation flow: no emails back and forth, it simplifies the communication and the resolution of incidents across users. I can easily narrow the scope to what is critical to us, this has reduced the remediation effort to specific and relevant incidents. Automatic notifications: as an admin, I do not need to investigate every and each incident. GitHub Integration: secrets within code are automaticall detected and merge is blocked.

CONS

So many ways to integrate, it might be a plus for others, it was confusing to me. in my case I was not clear if I needed a "VCS/GitHub" or "CI/CD GitHub Actions" integration. Pricing plan for small business is not fully clear and requires to "contact sales".

Reason for choosing GitGuardian

Ability to perform historical and automatic scans. Cloud based: no need for on-premises infrastructure. Proper technical support.

User Profile

Abhishek

Verified reviewer

Computer Software, 1 employee

Used weekly for less than 12 months

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

4

EASE OF USE

3

FUNCTIONALITY

4

Reviewed March 2024

Gitguardian prevented a major leak in my codebase

as i said, gitgauardian helped detect a leak in my codebase and emailed to notify me about it, else i would have found it pretty late.

PROS

It detected the leak pretty quick and gave me some steps which put me mentally at ease that my data was safe.

CONS

I think they can make there UI a little more user friendly as it is sometimes a little hard to navigate what leaks it detected and where its telling me to fix it, especially while im panicking.

Chris

Computer Software, 51-200 employees

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

4

EASE OF USE

5

VALUE FOR MONEY

3

CUSTOMER SUPPORT

1

FUNCTIONALITY

5

Reviewed November 2021

Easy to use for GitHub, not so easy for ADO.

PROS

Very easy to setup, simply a few clicks and you're done. Quickly alerts in near real time.

CONS

No support for integrating with ADO, which is frustrating because we've had to purchase another tool for this.

Vendor Response

Hi Chris, Thank you for taking the time to share your experience using GitGuardian. I am happy to learn our product is helping you keep your GitHub repositories secrets free. I also hear you and understand you had a difficult time using GitGuardian with Azure DevOps. While we don't offer a native integration for Azure Repos, the cloud-hosted solution for private Git repos, we do offer a native integration for Azure Pipelines to keep your CI pipelines secrets-free. I would like to offer you a dedicated 1:1 call to walk you through the setup, please drop me an email at ziad.ghalleb@gitguardian.com if you are interested. In addition, we can discuss your needs in terms of secrets scanning capabilities for Azure Repos and see how we can fit these in our 2022 roadmap. Thank you, Ziad

Replied November 2021

Torgny

Computer Software, 2-10 employees

Used daily for less than 6 months

Review Source: Capterra
This reviewer was invited by the software vendor to submit an honest review.

OVERALL RATING:

5

EASE OF USE

5

VALUE FOR MONEY

5

CUSTOMER SUPPORT

5

FUNCTIONALITY

5

Reviewed October 2021

GitGuardian integrates in a snap!

We are using GitGuardian to prevent secrets from leaking into repositories both public and private. So far our experience has been excellent. We actually leaked a private SSH key and got a notification from GitGuardian almost immediately. We were able to revoke the key and remediate the blunder.

PROS

Integration was a snap. We're already using pre-commit for most of our repos so hooking GitGuardian into the process was simple. Since we also already use GitHub, we found integration to be extremely easy.

CONS

We had no issues integrating GitGuardian and have not found any cons, yet.

Vendor Response

Thank you for sharing your experience Torgny! It's great to see teams lay great store by Shift Left and use GitGuardian at the pre-commit level.

Replied October 2021