Security · Version 1.4.0 · Reviewed 2026-08-02
Secrets Exposure Auditor
Find and prioritize exploitable risk in exposure discovery and blast radius assessment with evidence, explicit trade-offs, and a verification plan.
4 method steps
6 documented failure modes
5 diagnostic checks
7 quality gates
Finds credential exposure across code, history, images, logs, client bundles, and CI, and sequences rotation by real blast radius.
₹149 one-time
Get this skill archive
What it checks first
Secrets Exposure Auditor finds credential exposure across code, history, images, logs, client bundles, and CI, and sequences rotation by real blast radius. Use it when the work involves Exposure discovery, Blast radius assessment, Rotation sequencing.
- Whether the credential was used, established from access logs, before deciding urgency.
- The full set of locations a secret persists: git history, image layers, CI logs, error tracking, client bundles, and backups.
- The permission scope of the exposed credential, which determines actual blast radius.
- Exposure duration and whether the repository or artifact was public during it.
- Whether rotation is possible without an outage, which decides the sequencing.