{"uid":"cap_uUOwDt5ZYhlndBuUj0hYu","slug":"halowerk-secret-scanner-a1c0b1f4","name":"Halowerk Secret Scanner","description":"Prueft Text oder Quelltext auf 20 Arten von Geheimnissen: AWS, GitHub, GitLab, Slack, Stripe, OpenAI, Anthropic, Google, SendGrid, Twilio, npm, private Schluesselbloecke, JWT, Zugangsdaten in URLs, Datenbankverbindungen und allgemeine Zuweisungen mit Entropiepruefung. Liefert Regel, Schwere, Zeile, Spalte und eine gekuerzte Vorschau. Fundwerte werden nie vollstaendig zurueckgegeben.","url":"https://tools.halowerk.com/v1/secret/scan","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"text":{"type":"string","description":"Text oder Quelltext"},"min_entropy":{"type":"number","default":3.2,"description":"Schwelle fuer allgemeine Zuweisungen"}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.002","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.002/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.002","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.002","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_hjB7WzuxJh51x06i1_Zy8","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.002","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Scans text or source code for 20 types of secrets and credentials (AWS, GitHub, Slack, OpenAI, JWT, database URLs, etc.) and returns rule, severity, line, column, and redacted preview for each finding.","exampleAgentPrompt":"Scan this code snippet for any leaked secrets or credentials — I want to know the rule name, severity, line and column of any finding, plus a redacted preview: [paste code here].","exampleUseCases":[{"title":"Pre-commit secret leak check","prompt":"Before I commit this diff, can you scan it for any hardcoded API keys, passwords, or tokens? Show me the rule, severity, and which line each finding is on, but don't reveal the actual secret values."},{"title":"Audit pasted config file","prompt":"I just received this .env config file from a contractor — can you check it for exposed database connection strings, AWS credentials, or any other secrets? I need the severity and line numbers so I can redact them."},{"title":"Log file credential detection","prompt":"Someone sent me a support log that might contain accidentally leaked JWT tokens or Slack webhook URLs — can you scan it and tell me what secrets are present, with redacted previews so I can safely share the results?"}],"resultDescription":"A list of findings, each containing: the matched rule name (e.g. 'aws-access-key', 'openai-api-key'), severity level, line number, column number, and a truncated/redacted preview of the matched value. Actual secret values are never returned in full.","failureModes":["Empty or whitespace-only input returns no findings","Very large payloads may be rejected or timeout","Obfuscated or encoded secrets may evade pattern matching","False positives possible for high-entropy strings that resemble secrets but are not","Payment failure or insufficient USDC balance returns HTTP 402"],"whenToPreferThis":"Choose this endpoint when you need fast, deterministic regex-plus-entropy scanning of text or source code for a broad set of 20 known secret patterns, especially when you require redacted output (secrets never fully returned) and structured per-finding metadata including line and column positions. Prefer it over generic LLM-based detection when you need rule-based precision and auditability.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-13T12:47:43.754Z","isFirstParty":false}