Hook

Post-Edit Secrets Scan

Block writes that contain hardcoded API keys or placeholders.

安裝

manual
add to ~/.claude/settings.json hooks.PostToolUse

把這段加入 Claude Code MCP 設定,或直接透過 CLI 執行。

介紹

PostToolUse hook on Edit/Write. Pattern-matches against AWS keys, OpenAI tokens, sk- prefixes, and "your-api-key-here" placeholders.

常見使用情境

  • Block secret leaks
  • Catch placeholder strings
  • Pre-commit safety net

標籤

securitysecretsautomation