Checkpoint → Scan → Vault → Replace → Continue. Enforced at every critical boundary.
npm install @roadsidelab/keyspot-sdkhttps://raw.githubusercontent.com/roadsidedev/keyspot-sdk/main/SKILL.mdDetect API keys, crypto private keys, cloud credentials, DB URLs, JWTs, and more — across Web2 and Web3.
Secrets are replaced with HMAC-signed vault references. The agent never holds a raw secret.
Derived summaries, embeddings, or transformed copies of secrets are caught and redacted automatically.
18 jailbreak detection rules block prompt injection, system extraction, and tool abuse before they reach the LLM.
Every scan runs in an isolated thread or V8 sandbox. Your main loop is never blocked or exposed.
Hash-chained, Ed25519-signed audit logs. Optionally anchored to Arbitrum One blockchain. Zero secrets ever logged.