From secret-scan-triage
Use when secret scanning with gitleaks reports findings that need fast triage, containment, and false-positive adjudication before code changes or merges continue.
How this skill is triggered — by the user, by Claude, or both
Slash command
/secret-scan-triage:secret-scan-triageThe summary Claude sees in its skill listing — used to decide when to auto-load this skill
Use this skill when `gitleaks` findings need a disciplined triage path so real exposures are contained quickly and false positives are handled without weakening scanning.
Use this skill when gitleaks findings need a disciplined triage path so real exposures are contained quickly and false positives are handled without weakening scanning.
gitleaks reports findings in local hooks, CI, or a manual scan.| Situation | Use this skill? | Route instead |
|---|---|---|
Active gitleaks findings require triage and remediation | Yes | - |
| Secret was confirmed leaked in production systems requiring org-level incident handling | No | security incident owner / platform process |
| Task is dependency or policy redesign unrelated to concrete findings | No | agent-governance |
gitleaks with the repo's expected mode and capture raw findings.gitleaks output is clean or contains only justified, documented exceptions.
Any new allowlist entry is narrow and tied to specific evidence.
Repository checks relevant to touched files still pass.
Smoke test:
agent-governance)references/gitleaks-triage-patterns.md - repeatable disposition patterns for real leaks, probable leaks, and false positivesCreates, edits, and optimizes skills for Claude Code, including drafting, evaluating with test prompts, iterating on performance, and improving skill descriptions for better triggering accuracy.
npx claudepluginhub matt-riley/lucky-hat --plugin secret-scan-triage