Agentβ™₯︎Age
Catalog

Secrets-LE

Official

by nolindnaidoo Β· TypeScript

Detect hardcoded secrets in source and config. Reports masked previews, never the values.

io.github.nolindnaidoo/secrets-le (MCP) Server

This MCP server is a tool for detecting hardcoded secrets in source and configuration. It scans a workspace, produces masked previews of detected credentials, and redacts them in place. It emphasizes local processing with no secret values leaving the machine. Supported secret categories include API keys, tokens, passwords, and private keys.

πŸ› οΈ Key Features

  • Hardcoded secret detection in source and config
  • Masked previews of findings
  • Redaction in place after detection
  • Local-only operation (nothing leaves the machine)

πŸš€ Use Cases

  • Pre-commit or static-analysis workflows for secret scanning
  • Detecting exposed credentials such as API keys, JWTs, and private keys
  • Managing findings in a developer workspace

⚑ Developer Benefits

  • Automated scanning for common secret types (API key, credentials, JWT, private key)
  • Safer handling via masked previews rather than full values
  • In-place sanitization to remove detected secrets

⚠️ Limitations

  • The provided material does not specify scan scope, supported file formats, or configuration options beyond β€œsource and config.”

Topics

clideveloper-toolsleak-detectionletoolsmcppre-commitrustsecret-scanningstatic-analysistypescriptvscodevscode-extensionapi-keycredentialsjwtprivate-keysanitizationsecretssecurity

Related servers

More in Security