用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
直接命令不会经过审查 Prompt;运行前请先检查来源。
npx skills add https://github.com/tomevault-io/skills-registry --skill security-check命令会保持在同一行。复制前请横向滚动并检查完整内容。
想先保存到本地?可下载 SkillsMP 当前能够提供的文件。
基于 SOC 职业分类
正在显示 SKILL.md
| name | security-check |
| description | Verify repository security and check for secrets using gitleaks Use when this capability is needed. |
| metadata | {"author":"cloud-neutral-toolkit"} |
This skill provides instructions for ensuring the repository is secure and free of secrets.
To verify that the repository contains no secrets, run the following command in the repository root:
gitleaks detect -v
your-secret-key) in the file.git commit -am "Scrub secrets"git filter-repo --invert-paths --path <file_path> --force to completely remove the file if possible.git push --force is required after rewriting history.Run gitleaks detect -v again to confirm no leaks remain.
.gitignore to exclude sensitivity files like .env (unless they are example files with placeholders).Converted and distributed by TomeVault — claim your Tome and manage your conversions.