sha256:f92a932951174cbc1378a22fa56d0b779fc6e136eff8f42fc6c094fc83cd7cbd
Last pushed
24 days by ajeetraina777
Type
Sandbox Kit
Manifest digest
sha256:f92a932951174cbc1378a22fa56d0b779fc6e136eff8f42fc6c094fc83cd7cbd
Installs the GitGuardian CLI (ggshield) with proxy-injected API-key auth for api.gitguardian.com and wires it as a Cursor AI hook, so the agent's own actions are scanned for hardcoded secrets automatically - the real key never enters the sandbox.
| Name | Service | Required | Description |
|---|---|---|---|
GITGUARDIAN_API_KEY | gitguardian | Required | GitGuardian API key (from a Personal or Service Account, "scan" scope). Stored on the host; the sandbox only sees a placeholder and the proxy injects the real value on requests to api.gitguardian.com. |
github.com
objects.githubusercontent.com
release-assets.githubusercontent.com
api.gitguardian.com
sbx run <agent> --kit docker.io/ajeetraina777/gitguardian-kit:cursorRun the following command to install sbx on your machine.
brew install docker/tap/sbxwinget install Docker.sbx