OVERALL RATINGS
INSTALLS
212
SUPPORT
- Partner Supported
Key highlights of the appDetect sensitive secrets such as API keys and passwords with this powerful Bitbucket security scanner. Run audits & protect PII

Top Firms Trust Security for Bitbucket
Leading global enterprises rely on Security for Bitbucket for its scalability, accuracy, and commitment to data sovereignty. With Soteri, your sensitive data stays secure, local, and private—never leaving your instance.
Run Security Scans on Already-Committed Code
Run scans of already-committed content. Export results as downloadable reports, or drill down from the global status all the way to an individual branch via our interactive Security Scan Report.
Detect & Block Commits That Contain Sensitive Info
Accidentally committed secrets such as credentials, API keys, SSH keys, and passwords are a common vector for privilege escalation by attackers. Protect your organization by scanning and rejecting such commits.
Supporting media
More details
🗓 Want a closer look? Book a demo 🗓
Try the fastest, most powerful, and flexible secret scanning app for Bitbucket.
Detect sensitive data like passwords, usernames, API keys, SSH keys, and personally identifiable information (PII). Protect your company from errors that can be exploited by attackers!
Trusted by Fortune 500 leaders including Visa, Bank of America, and Verizon.
✅ Comprehensive scanning:
- Git scans per repository, per project, or globally
- Pre-receive hook to reject new commits with secrets
- Warn-only mode to notify about security issues without blocking commits
- 40+ built-in detection patterns
- Unlimited custom patterns
✅ Enterprise-grade features:
- CSV exports
- REST API for scripting and integration
- Fine-grained user access control
- Audit log events
🔒 Your data stays secure and local. We don't phone home.
😀 Our other security scanners:
🤝 Solution Partner? Contact us
Bitbucket 8? Use v4.18.3
Resources
Download
Get the .jar file downloaded to your system
App documentation
Comprehensive set of documentation from the partner on how this app works
EULA
Get the End User License Agreement for this app
Privacy and Security
Privacy policy
Atlassian's privacy policy is not applicable to the use of this app. Please refer to the privacy policy provided by this app's partner.
Partner privacy policySecurity program
This app is part of the Marketplace Bug Bounty program.
About Bug Bounty programTrust center
Access the partner's trust center to review their security, compliance and privacy information for this app.
Check out partner trust centerVersion information
Version 5.4.1•for Bitbucket Data Center 9.0.0 - 9.6.3
- Release date
- Aug 14th 2025
- Summary
- Adds checking for newline matchers in custom rules.
- Details
- Adds checking for newline matchers in custom rules. Rules are applied line-by-line, so newlines will never be matched.
- Payment model
- Paid via Atlassian