install
source · Clone the upstream repo
git clone https://github.com/openclaw/skills
OpenClaw · Install into ~/.openclaw/skills/
T=$(mktemp -d) && git clone --depth=1 https://github.com/openclaw/skills "$T" && mkdir -p ~/.openclaw/skills && cp -r "$T/skills/aronchick/expanso-secrets-scan" ~/.openclaw/skills/openclaw-skills-expanso-secrets-scan-31b976 && rm -rf "$T"
manifest:
skills/aronchick/expanso-secrets-scan/skill.yamlsource content
Skill: secrets-scan
Version: 1.0.0
Detect hardcoded secrets in text or code.
name: secrets-scan version: 1.0.0 description: Detect hardcoded secrets (API keys, tokens, passwords) in text or code
author: name: Expanso Team url: https://expanso.io avatar: EX
credentials:
- name: OPENAI_API_KEY required: false description: OpenAI API key (optional - enhances detection)
inputs:
- name: text type: string required: true description: Text or code to scan for secrets
- name: types type: array required: false description: Secret types to detect (api_key, token, password, etc.)
outputs:
- name: findings type: array description: Detected secrets with type and location
- name: has_secrets type: boolean description: Whether any secrets were found
- name: metadata type: object description: Audit metadata
backends:
- name: openai type: remote requires: [OPENAI_API_KEY] description: LLM-enhanced secret detection
- name: regex type: local description: Pattern-based detection (no API key)
components: inputs: - stdin - http_server processors: - mapping - openai_chat_completion outputs: - stdout - sync_response