# credential-scanner

> credential-scanner — nirwandogra-credential-scanner. Use this tool when you need to detect and prevent sensitive information leaks in your codebase, such as API keys, tokens, and passwords. The credential-scanner scans files, repositories, and directories to identify exposed secrets, providing output that highlights potential security risks. It is ideal for use in development, testing, and deployment environments to ensure secure coding practices and prevent data breaches.

Canonical page: https://skillsregistry.net/skills/nirwandogra-credential-scanner  
JSON: https://api.skillsregistry.net/v1/skills/nirwandogra-credential-scanner

## Description

Scans files, repos, and directories for leaked secrets — API keys, tokens, passwords, connection strings, private.

## Trust

- **Trust score (0–1):** 1.00
- **Verification tier:** scanned
- **Last scanned:** 2026-09-19

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** instructions
- **Runtime environment:** llm
- **Category:** security
- **Updated:** 2026-09-19

## Source

- **Source listing:** [ClawHub](https://clawskills.sh/skills/nirwandogra-credential-scanner)

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "nirwandogra-credential-scanner"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/nirwandogra-credential-scanner` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/nirwandogra-credential-scanner/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
