# Secrets Exposure Audit Inspect repository and runtime configuration patterns for committed, logged or exported secrets without echoing sensitive values. ## Purpose This is a publishable P0 built-in DevRunbook package. It is designed for the `inspect` work mode with default autonomy `diagnose` and risk tier `critical`. ## Required context - Scope: Describe the repository, application and deployment boundaries to assess. - Redaction policy: Choose how potential secret findings should be represented in evidence and reports. ## Completion - Potential exposures are safely fingerprinted, not reproduced. - Rotation and containment actions are prioritized. - Validation evidence and unresolved limitations are reported honestly. ## Quality status Editorially reviewed and covered by static structure and determinism fixtures. It is not represented as execution-validated or battle-tested until the platform stores corresponding evidence.