secrets-scan
Pass
Audited by Gen Agent Trust Hub on Oct 8, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the Bash tool to execute standard git commands (
git rev-parse,git ls-files) and file system operations (mkdir,date,grep,wc). These operations are scoped to the local repository for the purpose of identifying files to scan and are part of the core functionality. - [DATA_EXPOSURE]: The skill is designed to find and report sensitive information (credentials, API keys, tokens) to the user via a local report file. This behavior is the explicit purpose of the tool and is handled within the user's environment.
Audit Metadata