Baseline and Review Repository Secret Findings with detect-secrets
Scan a repository for secrets, keep an auditable baseline, and review only newly introduced findings during commits or CI checks.
Prerequisites
Python, detect-secrets CLI, git repository
Installation
Choose whichever fits your setup:
- Copy this skill folder into your local skills directory.
- Clone the repo and symlink or copy the skill into your agent workspace.
- Add the repo as a git submodule if you manage shared skills centrally.
- Install it through your internal provisioning or packaging workflow.
- Download the folder directly from GitHub and place it in your skills collection.
Install command or upstream instructions:
Install with pip, then create or update a baseline before scanning: pip install detect-secrets && detect-secrets scan > .secrets.baseline