scan_secrets
Scan files and directories to detect leaked secrets, API keys, tokens, and credentials in source code, .env files, and configurations. Verifies .gitignore coverage to prevent accidental exposure.
Instructions
Scan files and directories for leaked secrets, API keys, tokens, and credentials. Checks .env files, config files, and source code. Verifies .gitignore coverage.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| path | Yes | File or directory path to scan | |
| recursive | No | Scan subdirectories | |
| format | No | Output format: markdown (human) or json (machine-readable for agents) | markdown |