secrets-exposure

Community

Detect and scope exposed secrets.

Authorjaskaranhundal
Version1.0.0
Installs0

System Documentation

What problem does it solve?

This Skill automatically detects exposed credentials in code, commits, logs, and configuration files, classifying the secret type, estimating its blast radius, and mapping potential attacker timelines.

Core Features & Use Cases

  • Automated Secret Detection: Identifies various secret types (AWS keys, API tokens, private keys, etc.) using pattern matching and entropy analysis.
  • Blast Radius Assessment: Determines the potential impact of a leaked secret, from minimal to full account compromise.
  • Attacker Timeline Mapping: Estimates the time window for potential abuse and associated attacker tactics.
  • Use Case: A developer accidentally commits an AWS access key to a public repository. This Skill detects it, flags it as a critical full_account risk, and recommends immediate rotation and revocation.

Quick Start

Use the secrets-exposure skill to scan the current directory for any exposed secrets.

Dependency Matrix

Required Modules

pypdfpdfplumberpdf2image

Components

scriptsreferencesassets

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: secrets-exposure
Download link: https://github.com/jaskaranhundal/usap-skills/archive/main.zip#secrets-exposure

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 223,000+ vetted skills library on demand.