# GENESIS Agent Tools — Secret Leak Scanner

> GENESIS Agent Tools — Secret Leak Scanner is a paid API for AI agents from genesis-agent-tools.genesisagenttools.workers.dev, paid per call via x402, $0.02/call, status unknown (last checked 2026-10-01).

Scans arbitrary text for exposed secrets, API keys, tokens, and credentials, returning a list of detected hits and a count.

## Facts

- Endpoint: POST https://genesis-agent-tools.genesisagenttools.workers.dev/api/tools/secret-leak-scan?utm_source=zero.xyz
- Price: $0.02/call
- Payment: x402
- Status: unknown
- Last checked: 2026-10-01
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/genesis-agent-tools-secret-leak-scanner-2f8d8faf
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_gC6uX02hJ9yXGOwltPdxT

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability genesis-agent-tools-secret-leak-scanner-2f8d8faf -d '<json body>'
```

Example prompt: Can you scan this text for any leaked secrets or API keys? Here's the content: 'export STRIPE_KEY=sk_live_abc123 and GITHUB_TOKEN=ghp_xyz789'

## When to prefer this

Choose this endpoint when you need a quick, pay-per-call secret scanning check on arbitrary text without setting up a full static analysis pipeline. Ideal for agents that need to validate text snippets, code blobs, logs, or config files on-demand before storage, transmission, or deployment. Useful when you want a lightweight, programmatic alternative to tools like truffleHog or GitGuardian for single-text scanning.

## Known failure modes

- Empty or missing 'text' field returns a validation error
- Very large text inputs may time out or be truncated
- False positives on strings that resemble but are not actual secrets
- False negatives for obfuscated or encoded secrets
- Network or payment (x402) failures if USDC payment is not completed

## How this service works

Pay-per-call x402 APIs for autonomous agents on Base USDC: API compatibility analysis, bounded HTTP/JSON workflows, URL evidence analysis, crypto price consensus, and agent/MCP readiness checks.

## Output

Returns a JSON object with a 'hits' array listing each detected secret (including type and matched value/pattern) and a 'secret_count' integer indicating the total number of secrets found in the input text.

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "required": [
  "text"
 ],
 "properties": {
  "text": {
   "type": "string"
  }
 }
}
```

## Response schema (JSON Schema)

```json
{
 "type": "object",
 "properties": {
  "hits": {
   "type": "array"
  },
  "secret_count": {
   "type": "number"
  }
 }
}
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/genesis-agent-tools-secret-leak-scanner-2f8d8faf/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from genesis-agent-tools.genesisagenttools.workers.dev](https://www.zero.xyz/host/genesis-agent-tools.genesisagenttools.workers.dev/llms.txt)
