TruffleHog Release Notes
2026 January
3 min
improve response improve investigation and triage to make discovered secrets easier to act on whatβs new persistent saved filters added persistent, shareable saved filters that remain across sessions for streamlined workflows availability available in enterprise edition cloud analyze credential rotation api support added external api support for updating cloud credentials used by cloud analyzers availability available in enterprise edition slack notifier re authentication flow new streamlined re authentication and save flow for slack notifiers when slack credentials expire or permissions change, users can now easily re authenticate without recreating the entire notifier configuration availability available in enterprise edition improved notification list visibility updated notification list views to properly display heartbeat notifications for clearer channel health visibility availability available in enterprise edition secrets details page update added a βdate revokedβ field to provide visibility into when credentials were revoked availability available in enterprise edition saml metadata validation added comprehensive validation to prevent authentication loops and misconfiguration issues the system now validates saml configurations before accepting them, reducing authentication failures availability available in enterprise edition saml nameid format configuration added support for configuring saml nameid format, improving compatibility with various identity providers availability available in enterprise edition find more secrets expand discovery across more areas of the environment and add detection for additional secret types, ensuring no secrets slip through the cracks whatβs new github real time scanning a new github real time integration can scan commits as soon as they're pushed to github, providing faster detection of secrets only available for on prem scanners availability available in enterprise edition improved line number accuracy in large files fixed line number reporting for chunked file scans, enabling accurate secret location in large files resulting in a faster and more precise remediation availability available in enterprise edition and in open source repository naming support improved github scanning to correctly handle repositories with trailing hyphens, ensuring consistent scanning across all repository naming conventions availability available in enterprise edition and in open source git locale compatibility improvements enhanced git integration using iso strict formatting to prevent locale specific scan inconsistencies availability available in enterprise edition and in open source gerrit source resumption added resumption support for gerrit scanning to reliably continue interrupted scans, ensuring reliable scanning of large gerrit repositories without starting from scratch availability available in enterprise edition github source improvements restored the includerepos configuration option for github sources, giving you more granular control over which repositories to scan availability available in enterprise edition and in open source s3 source reliability improvements fixed a critical βindex out of rangeβ error to improve stability when scanning large s3 buckets availability available in enterprise edition and in open source improved gitlab enumeration enhanced gitlab enumeration for better performance and resilience in large environments availability available in enterprise edition and in open source google oauth reliability improvements fixed shared secret location handling for google oauth logins availability available in enterprise edition

