Secret Serialization

Finds secrets, tokens, passwords, and API keys that can leak through generated serialization: Python dataclass repr and asdict, attrs, pydantic modeldump, NamedTuple, JavaScript JSON.stringify and util.inspect, structured logs, tracing…

About this skill

Finds secrets, tokens, passwords, and API keys that can leak through generated serialization: Python dataclass repr and asdict, attrs, pydantic modeldump, NamedTuple, JavaScript JSON.stringify and util.inspect, structured logs, tracing spans, and error reports.

Maintained by Sentry. The source includes the instructions and any supporting files needed to use this skill.

Inside the instructions

  • 01Boundary
  • 02Credential Fields
  • 03Explicit Exclusion
  • 04Investigation Process
  • 05What To Report
  • 06Severity

Before you start

  1. Read the instructions and check tool or account requirements.
  2. Install the complete folder when the skill references scripts or other files.
  3. Provide your task context, then review the agent's output.

Source

getsentry/skills / secret-serialization

Source reviewed October 2, 2026 · Apache-2.0