Agent Plugins Marketplace
All plugins

set-up-secret-scanning

v3.0.2

Set up secret scanning with gitleaks and TruffleHog GitHub Actions workflows and optional gitleaks configuration.

Claude Code1 Skill

By Christopher BooneLicense: MIT2 GitHub starsUpdated last week

Directory evidence

Runtimes
Claude Code
Parsed components
1 skill or MCP entry
Source updated
Sep 16, 2026
Manifest status
Canonical path parsed

The directory validates manifest shape and source location. It does not execute the plugin or provide a security endorsement. Review the indexing methodology

Install set-up-secret-scanning for Claude Code

Installs for the current user
claude plugin marketplace add IchenDEV/agent-plugin-mkt
claude plugin marketplace update agent-plugin-marketplace
claude plugin install set-up-secret-scanning-2@agent-plugin-marketplace

Paste and run these commands in a terminal with Claude Code. They add and refresh the PluginsMP catalog, then install this plugin.

The installer fetches third-party code from the source repository shown on this page. This directory validates manifest structure and source location, but does not perform a security audit; review the manifest, components, and source before installing.

Get the source manually
git clone https://github.com/cboone/agent-harness-plugins

Clone the source repository, then follow its setup instructions to add the plugin to a compatible client. The plugin root is plugins/set-up-secret-scanning/.

Plugin files

plugins/set-up-secret-scanning/
├── .claude-plugin/plugin.json
└── skills/set-up-secret-scanning/SKILL.md

Included Skills1

set-up-secret-scanningskills/set-up-secret-scanning/SKILL.md

Set up secret scanning with gitleaks and TruffleHog GitHub Actions workflows and optional gitleaks configuration. Use when the user says "add secret scanning", "set up secret scanning", "set up gitleaks", "set up trufflehog", "scan for secrets in CI", or wants to detect leaked credentials in a repository. Both tools run on pushes to `main`, on pull requests, and on `workflow_dispatch`; gitleaks does fast pattern matching, TruffleHog adds verification-based scanning. Pairs with handle-secrets for application-level secret hygiene.

Plugin manifests1

plugins/set-up-secret-scanning/.claude-plugin/plugin.json
{
  "author": {
    "name": "Christopher Boone"
  },
  "description": "Set up secret scanning with gitleaks and TruffleHog GitHub Actions workflows and optional gitleaks configuration.",
  "homepage": "https://github.com/cboone/agent-harness-plugins",
  "keywords": [
    "gitleaks",
    "github-actions",
    "scanning",
    "secrets",
    "security",
    "setup",
    "trufflehog"
  ],
  "license": "MIT",
  "name": "set-up-secret-scanning",
  "repository": "https://github.com/cboone/agent-harness-plugins",
  "skills": "./skills",
  "version": "3.0.2"
}

If you maintain this plugin, link to this source-backed listing from your README so users can review its manifest and indexed components.

[set-up-secret-scanning on Agent Plugins Marketplace](https://pluginsmp.com/plugins/set-up-secret-scanning-2)