GitXray
Gitxray scans GitHub repositories and contributors to collect data using public GitHub REST APIs. It gathers information that would otherwise be very time-consuming to obtain manually, seeking out data in unconventional places.
Description
Gitxray (short for Git X-Ray) is a multifaceted security tool designed for use on GitHub repositories. It serves purposes including OSINT and Forensics, leveraging public GitHub REST APIs to gather information efficiently.
The tool analyzes repositories, contributors, and organizations, providing insights into GitHub ecosystems. It is particularly useful for security researchers and penetration testers needing to examine public GitHub data comprehensively.
Developed by Kulkan Security, gitxray emphasizes 'Trust no one!' in its approach to repository analysis.
How It Works
Gitxray uses public GitHub REST APIs to collect data on repositories, contributors, and organizations. It processes inputs like single repositories, files of repositories, or entire organizations, applying filters and outputting in formats such as HTML, text, or JSON.
Installation
sudo apt install gitxrayFlags
Examples
gitxray -hgitxray -r https://github.com/user/repogitxray -rf repos.txtgitxray -o organization-namegitxray -r repo -c contributorgitxray -r repo -lgitxray -r repo -f filtergitxray -r repo -out output.html -outformat html