Scans your local development machine for leaked credentials in environment files, shell history, and config files across AWS, Docker, GitHub CLI, npm, SSH, and 35+ secret patterns. Exposes two tools: scan_secrets for a full report with file paths and line numbers, and scan_summary for a quick health score from 0 to 100. Everything runs locally with no network calls. You'd reach for this when you want Claude to audit your machine for API keys you've accidentally left in .env files, pasted into bash history, or stored in ~/.aws/credentials, then get specific remediation steps for each finding.
claude mcp add --transport stdio 78degrees-ghosthunt uvx ghosthunt