cyberneticlibrary

Redact GitHub secrets from OpenClaw

openclaw-secret-scanning-maintainerskillsetup L2377,536
openclaw/openclaw
What it does

Triage, redact, and resolve GitHub Secret Scanning alerts with safe cleanup

Best for

Maintainers cleaning up accidental secret leaks without further exposure.

Inputs
  • · Alert number
  • · Secret location metadata
Outputs
  • · Redacted body/comment
  • · Resolution status
Requires
  • · GitHub API
  • · secret-scanning.mjs script
Preconditions
  • · Maintainer/admin permissions
  • · Node.js script available
Failure modes
  • · Secrets still visible in edit history
  • · Notification posted to public alert
Trust signals
  • · Temp file UUID generation
  • · No plaintext secrets in stdout
  • · Location type routing rules