Truffle Security
Founded 2019 · 66 employees on LinkedIn · 10 known investors
Truffle Security develops TruffleHog, an open-source secrets scanning tool that identifies and remediates exposed credentials such as encryption keys in cloud and SaaS environments before exploitation. The platform serves security teams and developers protecting their software supply chain.
Also known as Truffle Security Co. · TruffleHog
Founders & leadership
Truffle Security was founded in 2019 by Dylan Ayrey.
Investors · 10
Also in the syndicate · 1
Funding
SEC filings, press & company announcements$25M disclosed across 1 of 2 rounds · 2025
- $25MSeries BNov 2025 · 4 sources
a16z (lead), Andreessen Horowitz (a16z) (lead), Intel Capital (lead), Abstract, Lytical Ventures
Source ↗
Source: company announcements and press reports — follow each round's link for the claim.
Company profile
researched Aug 2026Truffle Security Co. develops TruffleHog, a secrets-detection product line offered in both an open-source edition and a commercial enterprise edition. The tooling scans for exposed non-human identities (NHIs) and their associated credentials — API keys, passwords, tokens and similar secrets — across the software development lifecycle, including source code, hidden content, deleted code and version history, as well as sources such as GitHub comments and pull requests, Google Cloud and Slack. The company positions the product around helping security teams prioritize risk and remediate faster.
Core capabilities described by the company include secrets detection across a broad set of integrations; secrets verification against 800+ credential types checked directly with key providers to distinguish live keys from false positives; TruffleHog Analyze, which identifies the resources and permissions tied to a given secret without needing access to the provider's console (with AWS Analyze and GCP Analyze modules); continuous monitoring that tracks key status and issues alerts to confirm whether remediation occurred; and developer-facing ("shift left") workflows that automate revocation and automatically reverify each fix. Adjacent offerings listed by the company include Forager. Truffle Security also publishes research through its blog, "The Dig," covering topics such as leaked AWS keys with administrative privileges and secrets found on endpoint devices.
Business model
Dual-model open source and commercial software: a freely available open-source scanner alongside TruffleHog Enterprise, which the company describes as extending the same engine with enterprise-grade visibility, verification and collaboration features. The site lists a pricing page and a partners program.
Traction
The company reports more than 250,000 daily runs of TruffleHog and over 23,000 GitHub stars, and states the tool is used by thousands of developers and security teams. A published customer case study covers Gett, whose Application Security Lead cites TruffleHog's ability to validate whether a detected secret is a live key and to route findings automatically to developers.
Latest developments
In August 2026 the company launched TruffleHog AWS Analyze (with GCP Analyze also flagged as new) and published research reporting 768 leaked corporate AWS keys that held full admin rights and remained active, followed by a post on secrets found on endpoints.
▸Full profile — market position, technology, go-to-market, history
Market position
Positions TruffleHog as a secrets-scanning tool differentiated by live-key verification and breadth of integration coverage, with the company claiming support for the most complete list of SDLC integrations.
Emphasis on verification rather than pattern matching alone — confirming with providers whether a discovered credential is live — plus analysis of what a leaked key can access, scanning of non-obvious locations such as deleted code, version history and GitHub comments, and automated re-verification after remediation.
Technology
Scanning engine that detects candidate secrets and then verifies them directly with the issuing provider to confirm whether a key is live, covering 800+ credential types. Scans extend beyond current source code to hidden content, deleted code and version history, and to platforms including GitHub, Google Cloud and Slack. The Analyze component enumerates the resources and permissions reachable by a discovered credential, and continuous monitoring re-checks key status to confirm remediation.
Go-to-market
Open-source distribution via GitHub drives adoption among developers and security practitioners (reported at over 250,000 daily runs and 23,000+ GitHub stars), with conversion to TruffleHog Enterprise; supported by published security research, case studies, a newsletter, events, a community Slack channel and a partner program.
Developers and enterprise security and application-security teams responsible for detecting and remediating leaked credentials across their SDLC and SaaS/cloud tooling. Ride-hailing company Gett is cited as a customer.
History
The company's website carries the tagline "doing it the right way since 2021" and copyright notices for Truffle Security Co. through 2026.
Compiled by commissioned research from 1 cited public sources — announcements, filings, and press listed under research sources below.
Key figures
latest reportedCompany-reported or press-reported figures, each dated to when it was claimed — not independently audited.
Timeline · 2
launches, deals, and filingsTruffle Security introduced TruffleHog AWS Analyze, which shows the resources and permissions a leaked AWS key can reach. The company also lists GCP Analyze as a new capability.
Company research published on its blog reported 768 leaked corporate AWS keys with full administrative rights that were still active.
Dated company events from announcements, filings, and press; legal rows summarize public dockets and regulator releases.
In the news
▸Research sources · 1
primary sources listed
- Truffle Securitytrufflesecurity.com · web
1 public sources were cited for this profile; the first-party ones are listed here.
Frequently asked questions
- What does Truffle Security do?
- Truffle Security builds TruffleHog, open-source and enterprise tooling that finds, verifies and remediates leaked secrets.
- Who founded Truffle Security?
- Truffle Security was founded by Dylan Ayrey in 2019.
- Who are Truffle Security's investors?
- Truffle Security's investors include Abstract Ventures, Andreessen Horowitz, Expa, Harpoon Ventures, ESSENCE VC, Essence Venture Capital, Intel Capital, Lytical Ventures and 1 more.
- How much funding has Truffle Security raised?
- Truffle Security has disclosed $25M raised across 1 of its 2 known rounds.





