{"slug":"apiacre-com-v1-developer-secret-scan-2e05bd","title":"Detect likely leaked API keys, tokens, private-key headers, JWTs, and credential","host":"apiacre.com","method":"POST","resource":"https://apiacre.com/v1/developer/secret-scan","category":"code","description":"Detect likely leaked API keys, tokens, private-key headers, JWTs, and credential assignments in caller-supplied source or configuration text. Return type, line, fingerprint, and a fully redacted preview with no network access or code execution.","price_listed":0.005,"price_asked":0.005,"state":"answering","state_label":"Answering","checks_7d":1,"answered_7d":1,"latency_ms_median":350,"reported_calls_30d":1,"reported_payers_30d":1,"networks":["eip155:8453","solana:5eykt4UsFv8P8NJdTREpY1vzqKqZKvdp"],"badge":"unverified","paid_checks_7d":0,"paid_ok_7d":0,"example_input":{"body":{"content":"API_TOKEN=example-not-a-real-secret"},"bodyType":"json","method":"POST","type":"http"},"output_schema":{"$schema":"https://json-schema.org/draft/2020-12/schema","properties":{"input":{"additionalProperties":false,"properties":{"body":{"properties":{"content":{"maxLength":2000000,"title":"Content","type":"string"}},"required":["content"],"title":"SecretScanInput","type":"object"},"bodyType":{"enum":["json","form-data","text"],"type":"string"},"method":{"enum":["POST","PUT","PATCH"],"type":"string"},"type":{"const":"http","type":"string"}},"required":["type","method","bodyType","body"],"type":"object"},"output":{"properties":{"example":{"properties":{"data":{"additionalProperties":false,"description":"Structured Redacted credential leak scan result","properties":{"clean":{"type":"boolean"},"findingCount":{"minimum":0,"type":"integer"},"findings":{"items":{"additionalProperties":false,"properties":{"fingerprint":{"pattern":"^[0-9a-f]{16}$","type":"string"},"line":{"minimum":1,"type":"integer"},"preview":{"const":"[REDACTED]","type":"string"},"type":{"enum":["aws_access_key","github_token","private_key","jwt","generic_assignment"],"type":"string"}},"required":["type","line","fingerprint","preview"],"type":"object"},"maxItems":500,"type":"array"}},"required":["clean","findingCount","findings"],"type":"object"},"meta":{"properties":{"cached":{"type":"boolean"},"duration_ms":{"minimum":0,"type":"integer"},"next_actions":{"description":"Optional separately priced follow-up calls. Each action requires a new payment challenge and explicit buyer authorization.","items":{"properties":{"authorization_required":{"const":true,"type":"boolean"},"checkout_path":{"pattern":"^/try/","type":"string"},"executes_automatically":{"const":false,"type":"boolean"},"handoff_path":{"description":"Free full contract and spend-capped command handoff; reading it does not execute or purchase the follow-up.","pattern":"^/catalog/","type":"string"},"handoff_payment_required":{"const":false,"type":"boolean"},"input_template":{"description":"Client-side template only: $request refers to the original input, $result to this response, and $json(...) serializes its argument. The server does not execute the follow-up.","type":"object"},"maximum_atomic_usdc":{"pattern":"^[1-9][0-9]*$","type":"string"},"method":{"const":"POST","type":"string"},"path":{"pattern":"^/v1/","type":"string"},"price":{"pattern":"^\\$[0-9]+","type":"string"},"reason":{"type":"string"},"sample_path":{"pattern":"^/samples/","type":["string","null"]},"service":{"type":"string"},"title":{"type":"string"},"use_output":{"type":"string"}},"required":["service","title","reason","method","path","price","input_template","use_output","handoff_path","checkout_path","sample_path","maximum_atomic_usdc","handoff_payment_required","executes_automatically","authorization_required"],"type":"object"},"type":"array"},"sources":{"items":{"type":"string"},"type":"array"},"warnings":{"items":{"type":"string"},"type":"array"}},"required":["duration_ms","cached","sources","warnings","next_actions"],"type":"object"},"request_id":{"description":"Unique request identifier","type":"string"},"service":{"const":"developer.secret-scan","type":"string"},"version":{"const":"1","type":"string"}},"required":["request_id","service","version","data","meta"],"type":"object"},"type":{"type":"string"}},"required":["type"],"type":"object"}},"required":["input"],"type":"object"},"history":[{"day":"2026-09-24","reachable":true,"status":402,"valid_402":true,"asked_usdc":0.005,"price_match":true,"latency_ms":350,"error":null}],"description_full":"Detect likely leaked API keys, tokens, private-key headers, JWTs, and credential assignments in caller-supplied source or configuration text. Return type, line, fingerprint, and a fully redacted preview with no network access or code execution.","last_updated":"2026-09-01T13:12:46.865Z","schemes":["exact"]}