secret-sentry

by Chris Dwyer · ★ 0 · updated 3 days ago

Status lineGuardsPromptvalidates

0

Two-way secret scrubbing: redacts credentials before the model sees them and blocks writing them into tracked files or shell commands

install secret-sentry

Install

git clone https://github.com/ccdwyer/secret-sentry
claude --plugin-dir ./secret-sentry

Then run /reload-plugins or start a new session. Requires Claude Code 2.1.287+.

View source on GitHub

What it hooks into

From an automated scan with claude plugin validate, not a security review. Mods run with your permissions; read the code before installing.

Events
prompt.submitsession.appendtool.call
API calls
$.fs.exists$.fs.read$.fs.stat$.process.run$.state.get$.state.set$.ui.status$.ui.toast
Can see
every promptevery tool call
Reach
level 2 of 3 other: $.state.getother: $.state.setruns processesreads filesdraws

Origin

How it got here
Automated scan of public GitHub repos, via the CC0 dataset awesome-claude-code-mods (scan of ).
Repository
github.com/ccdwyer/secret-sentry
Path in repo
repository root
Author
Chris Dwyer @ccdwyer
License
MIT
First published
Last pushed
First listed here

Name and description come from the mod's own manifest. We link to the code; we don't host it, and it stays under its author's license.