🎁 Get the FREE AI Skills Starter Guide β€” Subscribe β†’
BytesAgainBytesAgain
πŸ¦€ ClawHub

Secrets Scanner

by @anmolnagpal

Detect hardcoded secrets, exposed API keys, and credential misconfigurations in IaC and config files

Versionv1.0.0
Installs1
πŸ”’ Constraints

  • Never output the actual secret value β€” reference by location only
  • Estimate blast radius: what AWS services/accounts could be accessed with this credential?
  • Flag Lambda environment variables storing secrets β€” should use Secrets Manager references
  • Recommend rotating any found credentials immediately
  • Never ask for credentials, access keys, or secret keys β€” only exported data or CLI/console output
  • If user pastes raw data, confirm no credentials are included before processing
  • View on ClawHub
    TERMINAL
    clawhub install secrets-scanner

    πŸ§ͺ Use this skill with your agent

    Most visitors already have an agent. Pick your environment, install or copy the workflow, then run the smoke-test prompt above.

    πŸ” Can't find the right skill?

    Search 60,000+ AI agent skills β€” free, no login needed.

    Search Skills β†’