Armory
Source
Browse
MCPs

leakferret

Context-aware secret scanner that lets an AI agent scan code, verify which leaked keys are actually live by calling the provider, and rewrite them to env-var lookups before committing. Exposes scan/verify/rewrite tools plus secret-type and verifier resources over MCP.

Score
52.4982 signals
Evidence
5 stars · 1 fork
Last commit
as last read from GitHub; most reads are from 2 Sep 2026 or later
Listed

Install

No one-command install. Set it up from its source.

Alternatives · MCPs

  1. culprit6 stars · 1 fork55.168
  2. trestle2 stars32.223
  3. secrets-audit-mcp1 star · 1 fork29.013

What it is

Context-aware secret scanner that lets an AI agent scan code, verify which leaked keys are actually live by calling the provider, and rewrite them to env-var lookups before committing. Exposes scan/verify/rewrite tools plus secret-type and verifier resources over MCP.

When to use it

Context-aware secret scanner that lets an AI agent scan code, verify which leaked keys are actually live by calling the provider, and rewrite them to env-var lookups before committing. Exposes scan/verify/rewrite tools plus secret-type and verifier resources over MCP.

How to install / invoke

See Glama for the install config.

Notes

Listed from the Glama MCP registry.