Skip to main content
تشغيل أي مهارة في Manus
بنقرة واحدة

detect-agent-credential-leak-mcp

النجوم٣
التفرعات٠
آخر تحديث٩ يوليو ٢٠٢٦ في ١٦:١٦

Detect credential-looking material leaked in MCP tool-call responses. Consumes the native/canonical application-activity projection from ingest-mcp-proxy-ocsf, scans `tools/call` response bodies for high-confidence token patterns (AWS access keys, GitHub tokens, OpenAI keys, Slack tokens), and emits an OCSF Detection Finding (class 2004) without echoing the raw secret back out. Use when the user mentions MCP credential exposure, leaked tool results, agent secret leakage, or OWASP MCP credential exposure in tool responses. Do NOT use on `tools/list` metadata, non-MCP logs, or as a semantic prompt-injection classifier. This first slice is a deterministic regex detector on native MCP response bodies.

التثبيت

التثبيت باستخدام Codex أو Claude انسخ هذا Prompt والصقه في Codex أو Claude أو مساعد آخر ليراجع صفحة Skill ويثبّتها لك.

مستكشف الملفات
4 ملفات
SKILL.md
readonly