Skip to main content

An educational CLI tool to prevent accidental sensitive data exposure.

Project description

safe-push 🛡️

An educational, beginner-friendly Python CLI tool that teaches you about accidental sensitive data exposure while helping you keep your repositories clean.

🌟 Why safe-push?

Accidentally pushing a .env file or a hardcoded API key to GitHub is a rite of passage for many developers—but it's also a major security risk! safe-push helps you identify these risks before you push, explaining why certain files shouldn't be shared.

Perfect for "vibe coders" and beginners who want to stay safe while learning.

🚀 Features

🆓 Free Tier (Always)

  • Scan Current Directory: Detects common mistakes like .env files, __pycache__, and venv folders.
  • Basic Secret Detection: Finds generic API keys and tokens.
  • Educational Insights: Explains the danger of each finding so you learn as you go.
  • No Data Leaves Your Machine: Your code stays local. Always.

💎 Premium Features

  • Advanced Secret Scanning: Deep detection for AWS, Stripe, OpenAI, Firebase, and more.
  • Auto .gitignore Generator: Quickly create a recommended .gitignore for your Python projects.
  • Pre-commit Hook Template: Automatically scan your code every time you try to git commit.
  • Verbose Mode: See exactly what's happening under the hood.

🛠️ Installation

pip install safe-push

📖 How to Use

Simply run the tool in your project's root directory:

safe-push

Options

  • safe-push --verbose: Show a detailed breakdown of the scan.
  • safe-push --unlock: Learn how to unlock premium features.
  • safe-push --generate-gitignore: (Premium) Create a recommended .gitignore.
  • safe-push --install-hook: (Premium) Install a Git pre-commit hook.

🔓 Unlocking Premium (The Solana Way)

We use a simple, decentralized verification system. No accounts, no credit cards.

  1. Donate at least 0.005 SOL (~$2) to the recipient wallet shown when you run safe-push --unlock.
  2. Enter your wallet address and the Transaction ID (TXID).
  3. The CLI verifies the transaction directly on the Solana blockchain and unlocks your features locally!

🔒 Security & Privacy

  • Local Only: This tool scans only your local directory.
  • Privacy First: No data, code, or telemetry is ever sent to any server.
  • Transparency: The only network call made is to a public Solana RPC endpoint for donation verification.

📜 License

MIT License. Feel free to use, learn, and share!


Stay safe and keep coding! 🚀

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

safe_push-0.1.4.tar.gz (10.8 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

safe_push-0.1.4-py3-none-any.whl (12.0 kB view details)

Uploaded Python 3

File details

Details for the file safe_push-0.1.4.tar.gz.

File metadata

  • Download URL: safe_push-0.1.4.tar.gz
  • Upload date:
  • Size: 10.8 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.5

File hashes

Hashes for safe_push-0.1.4.tar.gz
Algorithm Hash digest
SHA256 afd987fd06872e9b1a738cbf9af3bf17ab5658e09992de97ae55f69ed4af2b0c
MD5 2f0f48af9df0678e40a69c0ae77ac876
BLAKE2b-256 2db525f2416687c404e0ff39c3b6617a1da4d2d0e523a151e79bad5f74b17dd9

See more details on using hashes here.

File details

Details for the file safe_push-0.1.4-py3-none-any.whl.

File metadata

  • Download URL: safe_push-0.1.4-py3-none-any.whl
  • Upload date:
  • Size: 12.0 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.5

File hashes

Hashes for safe_push-0.1.4-py3-none-any.whl
Algorithm Hash digest
SHA256 9b2d5966f56324227a7b639e3d445cdc242108950e70a402601487ef699f0c32
MD5 1851a934ce0c201c62fdbfb470578a29
BLAKE2b-256 1df0e296b29d0350ca16670de92b707d08406b68ac766e108d06a40243f232be

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page