Agent skill

Sanitize Git Repo

by lazyFrogLOL in lazyFrogLOL/Harness_Engineering

Guidance for sanitizing git repositories by identifying and removing sensitive credentials, API keys, tokens, and other secrets.

No licenceAuto-check: notesDevelopment

Install Sanitize Git Repo

skills CLI
$ npx skills add lazyFrogLOL/Harness_Engineering --skill sanitize-git-repo -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install lazyFrogLOL/Harness_Engineering sanitize-git-repo --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/lazyFrogLOL/Harness_Engineering.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/sanitize-git-repo .claude/skills/sanitize-git-repo && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
sanitize-git-repo
GitHub stars
128
Token cost
~1.7k tokens
SKILL.md length
702 words
Files
1
Skills in repo
32
Repo updated
First seen
Licence
None found

At a glance

Guidance for sanitizing git repositories by identifying and removing sensitive credentials, API keys, tokens, and other secrets.

  • Works in 4 steps: Comprehensive Secret Detection → Systematic Verification → Sanitization Strategy → …
  • Tasks that involve Git workflow
  • SKILL.md covers When to Use This Skill, Critical Understanding, Approach and Common Pitfalls, plus 1 more section
  • Calls git

What it does

Sanitize Git Repo is an agent skill from lazyFrogLOL/Harness_Engineering. Guidance for sanitizing git repositories by identifying and removing sensitive credentials, API keys, tokens, and other secrets. This skill should be used when tasks involve cleaning repositories of secrets, preparing code for public release, auditing for credential exposure, or removing sensitive data from version control history.

Its SKILL.md is about 1.7k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Development, covering Git workflow. It works with Git and Docker.

When your agent uses it

  • Tasks that involve Git workflow

Example prompts

  • “/sanitize-git-repo”

Requirements

  • Docker
  • A credential in YOUR_TOKEN

Workflow steps

4 steps, taken from the step headings in SKILL.md.

  1. Comprehensive Secret Detection
  2. Systematic Verification
  3. Sanitization Strategy
  4. Verification

What it can do on your machine

Read from SKILL.md and the folder at commit cae3b25. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • git

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use git, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Sanitize Git Repo loads about 1.7k tokens when it runs. Until then it costs about 88 tokens; SKILL.md has 702 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~88
When it runs · the whole SKILL.md, loaded when a task matches
~1.7k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NoteMentions a .env fileSKILL.md:49
    - `.env`, `.env.*` files

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 702 words (~1,652 tokens).

“This skill provides systematic approaches for identifying and removing sensitive information from git repositories, including credentials, API keys, tokens, and other secrets.”

— opening of SKILL.md by lazyFrogLOL
name
sanitize-git-repo

Read the full SKILL.md on GitHub

Files

Just SKILL.md in skills/sanitize-git-repo of lazyFrogLOL/Harness_Engineering.

Open the folder on GitHubat commit cae3b25

Compare with similar skills

Sanitize Git Repo next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Sanitize Git Repo compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Sanitize Git Repo this skilllazyFrogLOL/Harness_Engineering128—~1.7kAutomated safety check: NotesNone
Git Conventionswerf/werf4.7k—~1.3kAutomated safety check: PassApache-2.0
Polyphonyalinaqi/maggy707—~980Automated safety check: PassMIT
Rtk Skillsopaco/deepwiki-rs3.1k—~1.4kAutomated safety check: PassMIT
Ssh Skillbadseal/ssh-skill538—~2.4kAutomated safety check: NotesNone
Pluggedin Stack OpsVeriTeknik/pluggedin-app103—~1.3kAutomated safety check: NotesMIT

Similar skills

  • werf conventions for branch names and commit messages. An agent skill from werf/werf.

    4.7k GitHub stars~1.3k tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Polyphony

    alinaqi/maggy

    Multi-agent orchestration with container-isolated workspaces — each agent session runs in its own Docker container with independent git branches

    707 GitHub stars~980 tokensUpdated 16 days ago
    DevelopmentAuto-check passed
  • Rtk Skill

    sopaco/deepwiki-rs

    A skill your agent uses when running shell commands that produce verbose output (git, test, build, lint, package managers, docker).

    3.1k GitHub stars~1.4k tokensUpdated 26 days ago
    DevOps & CloudAuto-check passed
  • Ssh Skill

    badseal/ssh-skill

    A skill your agent uses when a task requires SSH or SCP/SFTP behavior, a remote server, server alias/IP/hostname/user@host, bastion or jump-host access, remote command execution, upload/download…

    538 GitHub stars~2.4k tokensUpdated 1 mo ago
    DevOps & CloudAuto-check: notes
  • Pluggedin Stack Ops

    VeriTeknik/pluggedin-app

    A skill your agent uses when deploying, restarting, verifying or rolling back the containerised plugged.in production stack, when the site returns 404 or 5xx after a deploy or git operation, or when…

    103 GitHub stars~1.3k tokensUpdated 4 days ago
    DevOps & CloudAuto-check: notes
  • Deploy Playground

    objeck/objeck-lang

    Deploy/refresh the Objeck web playground (playground.objeck.org) on its VPS over SSH — git pull, rebuild the sandbox Docker image, restart the service, health-check.

    164 GitHub stars~2.1k tokensUpdated today
    DevOps & CloudAuto-check: warnings

More from lazyFrogLOL/Harness_Engineering

All 32 skills in this repo
  • Chess Best Move

    lazyFrogLOL/Harness_Engineering

    Guide for analyzing chess positions from images and determining optimal moves.

    128 GitHub stars~1.6k tokensUpdated 4 mo ago
    Auto-check passed
  • Crack 7z Hash

    lazyFrogLOL/Harness_Engineering

    This skill provides guidance for cracking 7z archive password hashes.

    128 GitHub stars~1.3k tokensUpdated 4 mo ago
    Auto-check passed
  • Distribution Search

    lazyFrogLOL/Harness_Engineering

    Guidance for finding probability distributions that satisfy specific statistical constraints such as KL divergence targets, entropy requirements, or moment conditions.

    128 GitHub stars~2.6k tokensUpdated 4 mo ago
    Auto-check passed
  • Feal Linear Cryptanalysis

    lazyFrogLOL/Harness_Engineering

    This skill provides guidance for FEAL cipher linear cryptanalysis tasks.

    128 GitHub stars~1.7k tokensUpdated 4 mo ago
    Auto-check passed
  • Gcode To Text

    lazyFrogLOL/Harness_Engineering

    Decode and interpret text content from G-code files by analyzing toolpath geometry and coordinate patterns.

    128 GitHub stars~1.4k tokensUpdated 4 mo ago
    Auto-check passed
  • Gpt2 Codegolf

    lazyFrogLOL/Harness_Engineering

    Guidance for implementing neural network inference (like GPT-2) under extreme code size constraints.

    128 GitHub stars~1.8k tokensUpdated 4 mo ago
    Auto-check passed

Works with

Questions about Sanitize Git Repo

What does Sanitize Git Repo do?

Guidance for sanitizing git repositories by identifying and removing sensitive credentials, API keys, tokens, and other secrets. Sanitize Git Repo is an agent skill from lazyFrogLOL/Harness_Engineering. Guidance for sanitizing git repositories by identifying and removing sensitive credentials, API keys, tokens, and other secrets.

When should I use Sanitize Git Repo?

Sanitize Git Repo fits situations like: tasks that involve Git workflow.

How do I install Sanitize Git Repo in Claude Code?

Run `npx skills add lazyFrogLOL/Harness_Engineering --skill sanitize-git-repo -a claude-code`. Or copy the skill folder (skills/sanitize-git-repo in lazyFrogLOL/Harness_Engineering) into .claude/skills/sanitize-git-repo in your project. Claude Code loads it when a task matches its description.

How do I install Sanitize Git Repo in Codex?

Run `npx skills add lazyFrogLOL/Harness_Engineering --skill sanitize-git-repo -a codex`. Or copy the skill folder (skills/sanitize-git-repo in lazyFrogLOL/Harness_Engineering) into .agents/skills/sanitize-git-repo in your project. Codex loads it when a task matches its description.

Can I use Sanitize Git Repo in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add lazyFrogLOL/Harness_Engineering --skill sanitize-git-repo -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/sanitize-git-repo, .gemini/skills/sanitize-git-repo, .github/skills/sanitize-git-repo and .opencode/skills/sanitize-git-repo in your project.

What does Sanitize Git Repo need to run?

Going by SKILL.md and its folder, Sanitize Git Repo needs the command-line tools its instructions call (git). Our summary lists: Docker; A credential in YOUR_TOKEN.

Does Sanitize Git Repo access the network?

SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Sanitize Git Repo safe to install?

Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Sanitize Git Repo use?

No licence was found for Sanitize Git Repo or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does Sanitize Git Repo use?

About 1.7k tokens (SKILL.md is roughly 6.6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Sanitize Git Repo?

Skills that share tags, products or a category with Sanitize Git Repo: Git Conventions (werf/werf, 4.7k stars), Polyphony (alinaqi/maggy, 707 stars), Rtk Skill (sopaco/deepwiki-rs, 3.1k stars) and Ssh Skill (badseal/ssh-skill, 538 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Sanitize Git Repo?

lazyFrogLOL (a GitHub user) maintains it in lazyFrogLOL/Harness_Engineering, which has 128 GitHub stars. The repository holds 32 skills in this directory. The repository was last updated on May 18, 2026.

Source: lazyFrogLOL/Harness_Engineering on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.