Secrets Scanner
by @anmolnagpal
Detect hardcoded secrets, exposed API keys, and credential misconfigurations in IaC and config files
π Constraints
Never output the actual secret value β reference by location only
Estimate blast radius: what AWS services/accounts could be accessed with this credential?
Flag Lambda environment variables storing secrets β should use Secrets Manager references
Recommend rotating any found credentials immediately
Never ask for credentials, access keys, or secret keys β only exported data or CLI/console output
If user pastes raw data, confirm no credentials are included before processing clawhub install secrets-scanner
π§ͺ Use this skill with your agent
Most visitors already have an agent. Pick your environment, install or copy the workflow, then run the smoke-test prompt above.
π Can't find the right skill?
Search 60,000+ AI agent skills β free, no login needed.
Search Skills β