Skip to main content

repo-secret-scan

Scans a git repo for hardcoded secrets, personal info, and sensitive data before it gets published. Checks both current files AND the full git commit history (because secrets in old commits are still exposed on push). Finds API keys, passwords, tokens, home directory paths with usernames, email addresses, private keys, database connection strings, and more. Reports findings by severity with exact file and line locations, and gives actionable remediation steps. Use this skill whenever the user asks to: check if a repo is safe to publish/push/open-source, scan for secrets or credentials, check for personal info, audit before making a repo public, "is this ready to push?", "anything private in here?", or similar pre-publish safety checks. Also use it proactively when the user is about to push or publish a repo and hasn't explicitly asked for a security check — it's better to catch issues early.

Ir para a instalação

Informações da origem

Repositório
yamz8/repo-secret-scan-skill
Última atividade na origem
16 de abril de 2026 às 11:15
Idioma detectado do SKILL.md
inglês
Estrelas
0
Forks
0

Opções de instalação

Por padrão, está selecionado o prompt que primeiro revisa a origem. Você pode mudar para um comando direto ou baixar uma cópia local.

Revise os arquivos de origem

Leia o SKILL.md e os arquivos complementares exibidos pelo SkillsMP antes de decidir se vai instalar.