configure-secret-scan

Official

Add secret scanning to Harness pipelines

Authorharness
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Add secret detection steps to existing Harness pipelines using STO security scanners. Scans code repositories for exposed credentials, API keys, tokens, and other sensitive information.

Core Features & Use Cases

  • Automatically identify the correct pipeline stage and insert a secret scan step early in CI.
  • Support multiple scanners (Harness Code by default, Gitleaks as a standalone option, and other commercial scanners) with authentication handling for required credentials.
  • Ensure scans run against the repository codebase with access to source via cloneCodebase on CI stages.

Quick Start

Configure secret scanning on an existing pipeline by selecting a scanner and adding the generated step before build steps.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: configure-secret-scan
Download link: https://github.com/harness/harness-skills/archive/main.zip#configure-secret-scan

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 510,000+ vetted skills library on demand.