Credential files
Flag .env files, SSH keys, npm tokens, kubeconfigs, and cloud credentials.
Catch secrets before agents read, send, or commit them.
Catch secrets before agents read, send, or commit them.
Flag .env files, SSH keys, npm tokens, kubeconfigs, and cloud credentials.
Mask or hold prompts with keys, tokens, PII, PHI, or credentials.
Require approval before suspicious staged content is committed.
Start simple. The same idea grows as your setup grows.
Configure and review locally.
Cloud sync, no dashboard.
Admins configure policy; employees follow it.
Same concepts, customer-owned backend.