Context-aware secret scanning for Ruby projects. A thin wrapper around the native leakferret binary (written in Rust): it finds hardcoded secrets, confirms which ones are actually live by calling the provider, and rewrites them to read from environment variables instead. The platform binary is downloaded automatically on first use, so no Rust toolchain is required. The API exposes Leakferret.scan, Leakferret.verify, and Leakferret.rewrite (each returning Finding objects), plus a `leakferret` command-line tool.

Required Ruby Version

>= 3.1.0

Authors

Maria Khan

Versions

  1. 0.2.0 June 04, 2026 (14.5 KB)
  2. 0.2.0 June 04, 2026 x86_64-linux (2.12 MB)
  3. 0.2.0 June 04, 2026 x86_64-darwin (2.03 MB)
  4. 0.2.0 June 04, 2026 x64-mingw-ucrt (1.95 MB)
  5. 0.2.0 June 04, 2026 arm64-darwin (1.85 MB)
  6. 0.1.14 June 03, 2026 (15 KB)
Show all versions (18 total)

Pushed by

GitHub

SHA 256 checksum