{"uid":"cap_QnuK9RZkcurqxy-QRnqeD","slug":"ddg-secret-leak-api-key-scanner-9b0a9873","name":"DDG Secret Leak & API Key Scanner","description":"Machine-payable DDG services for AI agents. Current public live payment rails are x402 multi-chain USDC and direct-crypto auto/manual for public receiving-address families. MPP/Stripe/Tempo is installed but pending live provider env plus penny-settlement proof before any MPP-live advertisement. DDG sells bounded artifacts/results, not raw provider account access.","url":"https://agents.daedalusdevelopmentgroup.com/v1/secret-leak-api-key-scan","method":"POST","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input","output"],"properties":{"input":{"type":"object","required":["type","method","bodyType","body"],"properties":{"body":{"type":"object"},"type":{"type":"string","const":"http"},"method":{"enum":["POST","PUT","PATCH"],"type":"string"},"bodyType":{"enum":["json","form-data","text"],"type":"string"}},"additionalProperties":true},"output":{"type":"object","required":["type","example"],"properties":{"type":{"type":"string"},"example":{"ok":true}},"additionalProperties":true}}},"responseSchema":{"type":"json","example":{"ok":true}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.02","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.02/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.02","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.02","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_3vyk_lsdSJEjZJiTfcyLr","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.02","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Scans submitted content for leaked secrets and exposed API keys, returning a detection result","exampleAgentPrompt":"Can you scan this JSON config blob for any leaked API keys or secrets before I push it to GitHub? Here's the content: {\"db_password\": \"supersecret123\", \"api_key\": \"sk-abc123xyz\"}.","exampleUseCases":[{"title":"Pre-commit secret leak check","prompt":"Before I commit this .env file to my repo, can you scan it for any exposed API keys or credentials? Here's the file contents: DATABASE_URL=postgres://user:password@host/db and STRIPE_KEY=sk_live_abc123."},{"title":"CI pipeline credential audit","prompt":"I'm building a CI pipeline and want to scan incoming pull request diffs for hardcoded secrets. Can you check this code snippet for any exposed tokens or API keys?"},{"title":"Third-party payload security review","prompt":"We received a JSON payload from a partner and I want to make sure it doesn't contain any accidentally exposed credentials or API keys before we log it. Can you scan it for secret leaks?"}],"resultDescription":"Returns a JSON object with an 'ok' boolean indicating whether the scan completed successfully, along with any detected secret leaks, exposed API keys, or credential findings within the submitted content.","failureModes":["Missing required 'input' or 'output' fields returns a validation error","Unsupported HTTP method (only POST/PUT/PATCH accepted for input) returns an enum validation error","Malformed JSON body causes a parse error","Payment failure via x402 protocol results in 402 Payment Required before scan executes","Empty or null body may return no findings or an error","Large payloads may be truncated or rejected"],"whenToPreferThis":"Choose this endpoint when you need a low-cost ($0.02 USDC), on-demand secret and API key leak scan on arbitrary text, JSON, or form data payloads — especially in automated agent pipelines, CI/CD workflows, or pre-commit hooks where you want a machine-payable, pay-per-call model without managing a subscription to a full SAST platform.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T18:32:47.999Z","isFirstParty":false}