Secret Scanner
OfficialDetect leaked API keys, tokens, and credentials in your codebase
What it does
Scans your repository for accidentally committed secrets using 200+ regex patterns.
Why you need it
One leaked API key can cost thousands. This skill catches secrets before they reach your remote repository, running as a pre-commit hook or CI step.
Key capabilities
- 200+ detection patterns (AWS, Stripe, GitHub, etc.)
- Pre-commit hook and CI integration
- Custom patterns and allowlists
- Historical scan for already-committed secrets
- Remediation suggestions per secret type
Category
security
Tier
Free
Version
v1.0.0
Installs
50
Latest: v1.0.0
Initial release
Apr 13, 2026