Secret Scan runs on your own machine — the client starts it, so there is no endpoint to ping. Last commit 12 Sep 2026.
Check text for leaked credentials before an agent writes or commits it. Runs locally.
Today is the operative word: we check Secret Scan every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.
Context-aware secret scanner: lets an AI agent scan, verify, and rewrite secrets before committing.
Safety checks an agent runs before it acts: package malware, destructive command, secret leak.
Scans code for hardcoded secrets (AWS, Stripe, GitHub, JWTs) before an AI agent commits it.
Security audit for AI agents — scan code/diffs for leaked secrets, check deps via OSV.
Scan configs, files, or text for leaked secrets and obvious misconfigurations. Nothing stored.
Local secret & credential checks for AI-assisted dev — runs on your machine, results redacted.
Security scanning for AI coding tools. Detects secrets, threat models, and runs pre-commit checks.
MCP security trust-check for agents before installing MCPs, Skills or tools.
Answers built from our own checks of this server.