secrets-scan

Pass

Audited by Gen Agent Trust Hub on Oct 8, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses the Bash tool to execute standard git commands (git rev-parse, git ls-files) and file system operations (mkdir, date, grep, wc). These operations are scoped to the local repository for the purpose of identifying files to scan and are part of the core functionality.
  • [DATA_EXPOSURE]: The skill is designed to find and report sensitive information (credentials, API keys, tokens) to the user via a local report file. This behavior is the explicit purpose of the tool and is handled within the user's environment.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 8, 2026, 06:27 PM