Skip to main content

An educational CLI tool to prevent accidental sensitive data exposure.

Project description

safe-push 🛡️

An educational, beginner-friendly Python CLI tool that teaches you about accidental sensitive data exposure while helping you keep your repositories clean.

🌟 Why safe-push?

Accidentally pushing a .env file or a hardcoded API key to GitHub is a rite of passage for many developers—but it's also a major security risk! safe-push helps you identify these risks before you push, explaining why certain files shouldn't be shared.

Perfect for "vibe coders" and beginners who want to stay safe while learning.

🚀 Features

🆓 Free Tier (Always)

  • Scan Current Directory: Detects common mistakes like .env files, __pycache__, and venv folders.
  • Basic Secret Detection: Finds generic API keys and tokens.
  • Educational Insights: Explains the danger of each finding so you learn as you go.
  • No Data Leaves Your Machine: Your code stays local. Always.

💎 Premium Features

  • Advanced Secret Scanning: Deep detection for AWS, Stripe, OpenAI, Firebase, and more.
  • Auto .gitignore Generator: Quickly create a recommended .gitignore for your Python projects.
  • Pre-commit Hook Template: Automatically scan your code every time you try to git commit.
  • Verbose Mode: See exactly what's happening under the hood.

🛠️ Installation

pip install safe-push

📖 How to Use

Simply run the tool in your project's root directory:

safe-push

Options

  • safe-push --verbose: Show a detailed breakdown of the scan.
  • safe-push --unlock: Learn how to unlock premium features.
  • safe-push --generate-gitignore: (Premium) Create a recommended .gitignore.
  • safe-push --install-hook: (Premium) Install a Git pre-commit hook.

🔓 Unlocking Premium (The Solana Way)

We use a simple, decentralized verification system. No accounts, no credit cards.

  1. Donate at least 0.005 SOL (~$2) to the recipient wallet shown when you run safe-push --unlock.
  2. Enter your wallet address and the Transaction ID (TXID).
  3. The CLI verifies the transaction directly on the Solana blockchain and unlocks your features locally!

🔒 Security & Privacy

  • Local Only: This tool scans only your local directory.
  • Privacy First: No data, code, or telemetry is ever sent to any server.
  • Transparency: The only network call made is to a public Solana RPC endpoint for donation verification.

📜 License

MIT License. Feel free to use, learn, and share!


Stay safe and keep coding! 🚀

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

safe_push-0.1.1.tar.gz (10.7 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

safe_push-0.1.1-py3-none-any.whl (11.9 kB view details)

Uploaded Python 3

File details

Details for the file safe_push-0.1.1.tar.gz.

File metadata

  • Download URL: safe_push-0.1.1.tar.gz
  • Upload date:
  • Size: 10.7 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.5

File hashes

Hashes for safe_push-0.1.1.tar.gz
Algorithm Hash digest
SHA256 81696a21f1d56c99b2d1023b46d81d47c85840224a848d41ff73d1549b4bdca7
MD5 6eb6d011f201adef902b93de9eaf27ed
BLAKE2b-256 d8dbc6f5a4b1dc05b24079fba41e1da8e294a543bb5cedfefafe582db7ee78f3

See more details on using hashes here.

File details

Details for the file safe_push-0.1.1-py3-none-any.whl.

File metadata

  • Download URL: safe_push-0.1.1-py3-none-any.whl
  • Upload date:
  • Size: 11.9 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.5

File hashes

Hashes for safe_push-0.1.1-py3-none-any.whl
Algorithm Hash digest
SHA256 d6f3151719547dbf110efc60df8dc2dfd2fbecf7c6ea9230ef05a603b5c1c6af
MD5 ea9a5cfef69c01d8594f532970b6027e
BLAKE2b-256 2b5e80c0abb7fcc53720a25188e82be582e4ce1cdf91e10286fe53e661729394

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page