{"uid":"cap_bQgT1cjDGx2Bds1syUxrt","slug":"gitleaks-secret-scanner-the-stall-x402-95359fcd","name":"Gitleaks Secret Scanner — The Stall x402","description":"Domain-agnostic x402 capability chassis by IntuiTek¹. 300 AI-callable data services — pay USDC on Base mainnet. No accounts or API keys required.","url":"https://the-stall.intuitek.ai/cap/gitleaks-scan","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET"],"type":"string"},"queryParams":{"type":"object","required":["github_repo"],"properties":{"github_repo":{"type":"string","description":"Public GitHub repo in 'owner/repo' format (e.g. 'vercel/next.js'). Must be publicly accessible without authentication."}}}},"additionalProperties":false}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"4","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$4/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"4","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"4","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_uKfJjlIV-pi0FjCDYEWsG","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"4","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Scans a public GitHub repository for exposed secrets, credentials, and API keys using Gitleaks","exampleAgentPrompt":"Can you scan the public GitHub repo 'openai/openai-python' for any leaked secrets, API keys, or hardcoded credentials using Gitleaks?","exampleUseCases":[{"title":"Pre-merge security check for open-source PR","prompt":"Before we merge contributions from that fork, can you run a Gitleaks scan on 'acme-corp/backend-api' to make sure nobody accidentally committed any API keys or passwords?"},{"title":"Supply chain audit of a dependency","prompt":"I'm about to add 'someuser/cool-library' as a dependency — can you check it for any hardcoded secrets or leaked credentials so I know it's safe to use?"},{"title":"Incident response — checking for credential exposure","prompt":"We just got an alert that a developer may have pushed AWS keys to 'myorg/infra-scripts' — can you scan that public repo with Gitleaks right now and tell me what secrets were found?"}],"resultDescription":"Returns a list of detected secrets found in the repository, including the type of secret (e.g. AWS key, GitHub token, generic API key), the file path, line number, commit reference, and the matched rule that triggered the detection. If no secrets are found, returns a clean result.","failureModes":["Repository is private or inaccessible — returns an error since only public repos are supported","Invalid 'owner/repo' format — returns a validation error","Repository does not exist — returns a not-found error","Very large repositories may time out or return partial results","Rate limiting on GitHub's side may cause scan failures","False positives — test fixtures or example keys flagged as real secrets"],"whenToPreferThis":"Choose this endpoint when you need a quick, no-setup secrets scan on a public GitHub repository without configuring your own Gitleaks instance or CI pipeline. Ideal for one-off security audits, supply chain checks before adopting a dependency, or incident response triage. Pay-per-call via USDC means no subscription commitment. Prefer this over manual Gitleaks setup when you need results immediately from an agent workflow.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-13T18:49:32.825Z","isFirstParty":false}