TacoSkill LAB
TacoSkill LAB
HomeSkillHubCreatePlaygroundSkillKit
© 2026 TacoSkill LAB
AboutPrivacyTerms
  1. Home
  2. /
  3. SkillHub
  4. /
  5. scanning-for-secrets
Improve

scanning-for-secrets

5.2

by jeremylongshore

79Favorites
87Upvotes
0Downvotes

Detect exposed secrets, API keys, and credentials in code. Use when auditing for secret leaks. Trigger with 'scan for secrets', 'find exposed keys', or 'check credentials'.

secrets

5.2

Rating

0

Installs

Security

Category

Quick Review

The skill provides a clear structure and reasonable overview of secret scanning capabilities. The description adequately covers what the skill does (detect secrets, API keys, credentials) with appropriate trigger phrases. However, taskKnowledge is limited - while it references a 'secret-scanner plugin' and mentions patterns like AWS keys (AKIA[0-9A-Z]{16}), it lacks concrete implementation details, actual scanning scripts, or command sequences a CLI agent would execute. The examples describe workflows but don't show actual tool invocations. Structure is good with clear sections and logical flow. Novelty is moderate - while secret scanning is valuable, the skill as documented doesn't demonstrate significant complexity beyond what a CLI agent could accomplish with standard grep/pattern matching tools given sufficient tokens. To improve, add concrete bash scripts, specific tool commands (e.g., truffleHog, gitleaks, or custom regex patterns), and actual execution sequences that would meaningfully reduce token cost for the agent.

LLM Signals

Description coverage6
Task knowledge4
Structure7
Novelty4

GitHub Signals

1,046
135
8
0
Last commit 0 days ago

Publisher

jeremylongshore

jeremylongshore

Skill Author

Related Skills

security-reviewersecure-code-guardianrepomix-safe-mixer

Loading SKILL.md…

Try onlineView on GitHub

Publisher

jeremylongshore avatar
jeremylongshore

Skill Author

Related Skills

security-reviewer

Jeffallan

6.4

secure-code-guardian

Jeffallan

6.4

repomix-safe-mixer

daymade

7.4

apktool

BrownFineSecurity

6.9
Try online