legitify
« Back to VersTracker
Description:
Tool to detect/remediate misconfig and security risks of GitHub/GitLab assets
Type: Formula  |  Latest Version: 1.0.11@0  |  Tracked Since: Dec 26, 2025
Links: Homepage  |  formulae.brew.sh
Category: Security
Tags: security github gitlab compliance devops scanning
Install: brew install legitify
About:
Legitify is a command-line tool designed to identify and remediate security misconfigurations in GitHub and GitLab environments. It scans organizations, repositories, and users against a comprehensive suite of security policies to detect risks like excessive permissions or missing 2FA. The tool helps teams enforce security best practices and maintain compliance across their version control systems.
Key Features:
  • Comprehensive policy scanning for GitHub and GitLab
  • Actionable remediation steps for detected issues
  • Support for both SaaS and self-hosted instances
  • Flexible output formats (JSON, SARIF, etc.)
  • CI/CD integration capabilities
Use Cases:
  • Auditing organizational security posture across Git assets
  • Enforcing security policies in CI/CD pipelines
  • Remediating misconfigured repository and user settings
Alternatives:
  • TruffleHog – TruffleHog focuses primarily on secrets detection, while Legitify specializes in configuration and policy compliance.
  • Gitleaks – Gitleaks is a secrets scanner, whereas Legitify addresses broader governance and misconfiguration issues.
Version History
Detected Version Rev Change Commit
Dec 26, 2025 3:04pm 1.0.11 0 VERSION_BUMP b073dd8e
Sep 14, 2024 1:37pm 0 VERSION_BUMP 17f2cc4d