secret-mask
secret-mask intercepts tool output, file reads, and prompts to redact API keys, tokens, passwords, and .env values before Claude sees them, replacing sensitive data with tokens like `‹secret:1›` while preserving the real values on your screen. It masks secrets from .env files, AWS credentials, npm/netrc configs, and environment variables, plus well-known token formats from GitHub, GitLab, AWS, Anthropic, OpenAI, Stripe, Slack, Google, and other services.
Install
Source: https://github.com/mashabek/claude-mods/tree/HEAD/plugins/secret-mask
What it's made of
no extra components
- Commands
- 0
- Agents
- 0
- Skills
- 0
- MCP servers
- 0
- Hooks
- 0
What it needs & plugs into
- API keys
- none
- Paid services
- none detected
- External tools
- none
- Talks to
- nothing external detected
Analyzed . Facts extracted from the plugin's files. Prose generated by claude-haiku-4-5-20251001.
Is this your plugin?
Claim it to keep the card accurate and enter the weekly contest. Requires signing in as the GitHub owner (mashabek).