secret-sentry
by Chris Dwyer · ★ 0 · updated 3 days ago
0
Two-way secret scrubbing: redacts credentials before the model sees them and blocks writing them into tracked files or shell commands
Install
git clone https://github.com/ccdwyer/secret-sentryclaude --plugin-dir ./secret-sentryThen run /reload-plugins or start a new session. Requires Claude Code 2.1.287+.
What it hooks into
From an automated scan with claude plugin validate, not a security review. Mods run with your permissions; read the code before installing.
- Events
prompt.submitsession.appendtool.call- API calls
$.fs.exists$.fs.read$.fs.stat$.process.run$.state.get$.state.set$.ui.status$.ui.toast- Can see
every promptevery tool call- Reach
- level 2 of 3 other: $.state.getother: $.state.setruns processesreads filesdraws
Origin
- How it got here
- Automated scan of public GitHub repos, via the CC0 dataset awesome-claude-code-mods (scan of ).
- Repository
- github.com/ccdwyer/secret-sentry
- Path in repo
- repository root
- Author
- Chris Dwyer @ccdwyer
- License
- MIT
- First published
- Last pushed
- First listed here
Name and description come from the mod's own manifest. We link to the code; we don't host it, and it stays under its author's license.