https://github.com/turbot/steampipe-plugin-code
  
  
    Use SQL to instantly query secrets and more from source code. Open source CLI. No DB required. 
    https://github.com/turbot/steampipe-plugin-code
  
backup code-scanner etl hacktoberfest postgresql postgresql-fdw secrets-detection sql sqlite steampipe steampipe-plugin zero-etl
        Last synced: 17 days ago 
        JSON representation
    
Use SQL to instantly query secrets and more from source code. Open source CLI. No DB required.
- Host: GitHub
- URL: https://github.com/turbot/steampipe-plugin-code
- Owner: turbot
- License: apache-2.0
- Created: 2021-08-20T00:38:35.000Z (about 4 years ago)
- Default Branch: main
- Last Pushed: 2025-04-16T23:24:52.000Z (6 months ago)
- Last Synced: 2025-04-17T00:33:41.607Z (6 months ago)
- Topics: backup, code-scanner, etl, hacktoberfest, postgresql, postgresql-fdw, secrets-detection, sql, sqlite, steampipe, steampipe-plugin, zero-etl
- Language: Go
- Homepage: https://hub.steampipe.io/plugins/turbot/code
- Size: 510 KB
- Stars: 16
- Watchers: 8
- Forks: 2
- Open Issues: 4
- 
            Metadata Files:
            - Readme: README.md
- Changelog: CHANGELOG.md
- License: LICENSE
 
Awesome Lists containing this project
- DevSecOps - https://github.com/turbot/steampipe-plugin-code - plugin-code)](https://github.com/turbot/steampipe-plugin-code/stargazers) | (Pre-commit time tools)
README
          
# Code Plugin for Steampipe
Use SQL to query secrets and more from source code.
- **[Get started →](https://hub.steampipe.io/plugins/turbot/code)**
- Documentation: [Table definitions & examples](https://hub.steampipe.io/plugins/turbot/code/tables)
- Community: [Join #steampipe on Slack →](https://turbot.com/community/join)
- Get involved: [Issues](https://github.com/turbot/steampipe-plugin-code/issues)
## Quick start
Install the plugin with [Steampipe](https://steampipe.io):
```shell
steampipe plugin install code
```
Run a query:
```sql
select
  secret_type,
  secret,
  authenticated,
  line,
  col
from
  code_secret
where
  src =
    'Mixed secrets are matched:\n'
    '* Slack: xoxp-5228148520-5228148525-1323104836872-10674849628c43b9d4b4660f7f9a7b65\n'
    '* AWS: AKIA4YFAKFKFYXTDS353\n'
    '* Basic auth: https://joe:passwd123@example.com/secret'
    '* Stripe: sk_live_tR3PYbcVNZZ796tH88S4VQ2u';
```
## Engines
This plugin is available for the following engines:
| Engine        | Description
|---------------|------------------------------------------
| [Steampipe](https://steampipe.io/docs) | The Steampipe CLI exposes APIs and services as a high-performance relational database, giving you the ability to write SQL-based queries to explore dynamic data. Mods extend Steampipe's capabilities with dashboards, reports, and controls built with simple HCL. The Steampipe CLI is a turnkey solution that includes its own Postgres database, plugin management, and mod support.
| [Postgres FDW](https://steampipe.io/docs/steampipe_postgres/overview) | Steampipe Postgres FDWs are native Postgres Foreign Data Wrappers that translate APIs to foreign tables. Unlike Steampipe CLI, which ships with its own Postgres server instance, the Steampipe Postgres FDWs can be installed in any supported Postgres database version.
| [SQLite Extension](https://steampipe.io/docs//steampipe_sqlite/overview) | Steampipe SQLite Extensions provide SQLite virtual tables that translate your queries into API calls, transparently fetching information from your API or service as you request it.
| [Export](https://steampipe.io/docs/steampipe_export/overview) | Steampipe Plugin Exporters provide a flexible mechanism for exporting information from cloud services and APIs. Each exporter is a stand-alone binary that allows you to extract data using Steampipe plugins without a database.
| [Turbot Pipes](https://turbot.com/pipes/docs) | Turbot Pipes is the only intelligence, automation & security platform built specifically for DevOps. Pipes provide hosted Steampipe database instances, shared dashboards, snapshots, and more.
## Developing
Prerequisites:
- [Steampipe](https://steampipe.io/downloads)
- [Golang](https://golang.org/doc/install)
Clone:
```sh
git clone https://github.com/turbot/steampipe-plugin-code.git
cd steampipe-plugin-code
```
Build, which automatically installs the new version to your `~/.steampipe/plugins` directory:
```
make
```
Configure the plugin:
```
cp config/* ~/.steampipe/config
vi ~/.steampipe/config/code.spc
```
Try it!
```
steampipe query
> .inspect code
```
Further reading:
- [Writing plugins](https://steampipe.io/docs/develop/writing-plugins)
- [Writing your first table](https://steampipe.io/docs/develop/writing-your-first-table)
## Credits
- The `code_secret` table is based on [Yelp's detect secrets](https://github.com/Yelp/detect-secrets)
  project. The general matching approach and regular expressions are copied and
  based on their amazing work.
## Open Source & Contributing
This repository is published under the [Apache 2.0](https://www.apache.org/licenses/LICENSE-2.0) (source code) and [CC BY-NC-ND](https://creativecommons.org/licenses/by-nc-nd/2.0/) (docs) licenses. Please see our [code of conduct](https://github.com/turbot/.github/blob/main/CODE_OF_CONDUCT.md). We look forward to collaborating with you!
[Steampipe](https://steampipe.io) is a product produced from this open source software, exclusively by [Turbot HQ, Inc](https://turbot.com). It is distributed under our commercial terms. Others are allowed to make their own distribution of the software, but cannot use any of the Turbot trademarks, cloud services, etc. You can learn more in our [Open Source FAQ](https://turbot.com/open-source).
## Get Involved
**[Join #steampipe on Slack →](https://turbot.com/community/join)**
Want to help but don't know where to start? Pick up one of the `help wanted` issues:
- [Steampipe](https://github.com/turbot/steampipe/labels/help%20wanted)
- [Code Plugin](https://github.com/turbot/steampipe-plugin-code/labels/help%20wanted)