scan_secrets
Scans a codebase directory for exposed secrets, API keys, and credentials, including AWS keys, GitHub tokens, and database connection strings.
Instructions
Scan a codebase directory for exposed secrets, API keys, and credentials.
Detects AWS keys, GitHub tokens, GCP keys, Slack tokens, JWTs, private keys, database connection strings, and generic hardcoded secrets.
Use this when asked to check for leaked credentials or secrets.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| path | Yes |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
| result | Yes |