Phantom Secrets runs on your own machine — the client starts it, so there is no endpoint to ping. 51 installs a week from npm. Last commit 9 Sep 2026.
Stop AI coding agents from leaking API keys. Local proxy swaps real secrets for phm_ tokens.
We read the source, 22 h ago · rules 3dff92dd89df
What this server is able to do. For an MCP server this is often the job itself — a terminal server runs commands because that is what it is for. Listed so you know what you are plugging in, not as an accusation.
postinstall: node install.js
этот файл ставится пользователю, но в репозитории его нет
execSync(
markdown: readFileSync(path.join(DOCS_ROOT, entry.file), "utf8"),
Found in continuous integration, deployment or infrastructure files, or in a neighbouring package of the same monorepo. None of this is installed when you add the server: it describes how the project is built and released. We list it because a leaked key in a build pipeline is still a real problem, but it is not something this server does on your machine.
- name: Tear down local database and delete its volumes
if: ${{ always() && steps.start_database.outcome != 'skipped' }}
Is this your server and something here is wrong? Tell us — corrections are free and do not require a plan.
We found places where it runs commands, builds paths or queries from values it is given. None of that is a flaw by itself — it becomes one when the code changes, and code changes quietly between releases. We re-read it on every one.
This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.
claude mcp add phantom-secrets-mcp -- npx -y phantom-secrets-mcp
{
"mcpServers": {
"phantom-secrets-mcp": {
"args": [
"-y",
"phantom-secrets-mcp"
],
"command": "npx"
}
}
}
[mcp_servers.phantom-secrets-mcp]
command = "npx"
args = ["-y", "phantom-secrets-mcp"]
{
"mcpServers": {
"phantom-secrets-mcp": {
"args": [
"-y",
"phantom-secrets-mcp"
],
"command": "npx"
}
}
}
{
"mcpServers": {
"phantom-secrets-mcp": {
"args": [
"-y",
"phantom-secrets-mcp"
],
"command": "npx"
}
}
}
Local AES-256-GCM vault for AI agents. Secrets stay local, LLMs never see real API keys.
Real-time semantic security for AI coding agents and MCP tools
Secure secrets proxy for AI agents — manages API keys so agents never see raw credentials.
OS keychain secrets for AI coding agents, over MCP.
Detects leaked secrets (API keys, tokens, private keys) in source code.
Autonomous log surgery & secret redaction MCP server for AI coding agents.
Local-first security check for AI coding agents: secrets, .env exposure, git-history leaks, CVEs.
Scans AI coding sessions and assistant configs for leaked secrets and risky hooks; local, redacted
Answers built from our own checks of this server.