client-secret-exposure-skill
Audit client bundles and applications for exposed secrets and security gaps
Audit client bundles and applications for exposed secrets and security gaps
client-secret-exposure audits web, mobile, and backend projects for secrets exposed in client bundles, insecure storage, broken access control, XSS, weak authentication, sensitive logs, dependency issues, headers, rate limits, business-logic flaws, and CI secrets. It is useful for Next.js and other app stacks, but the checks only identify findings; developers still need to remediate and retest the application.
Resource types
Use cases
Platforms
Capabilities
Audit suspension risks in a Claude Code working environment.
Check whether a specific CVE actually applies to your environment.
Audience
Public GitHub facts last synced Jul 10, 2026.
Store and inject development secrets through 1Password from Claude Code.
Audit a deployed public app for production gaps missed during coding.