LLM Redactor
Description
A transparent egress gateway to redact sensitive credentials and local data for LLM coding agents.
Installation
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open the source below and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
README
LLM-Redactor
A local transparent proxy to redact secrets (API keys, PII) before they leave your machine.
| Feature | Direct Connection | With LLM-Redactor |
|---|---|---|
| Data Privacy | Secrets sent to Cloud | Redacted locally |
| Provider Sees | Prompt: "Fix this: API_KEY=sk-123..." |
Prompt: "Fix this: API_KEY=[REDACTED]" |
| Streaming | Standard | Real-time filtering |
Core Features
- Automatic Redaction: Detects 100+ secret types using Gitleaks-compatible rules.
- Zero Configuration: No need to modify your existing workflows.
- Zero-Latency Streaming: Intercepts and filters SSE streams in real-time.
- Deep JSON Scanning: Recursively traverses nested structures (e.g., Anthropic content blocks).
- Local Audit: Records detected leaks to
detections.jsonl.
Use Case 1: Execute Command with Redaction (Recommended)
This is the easiest way to use LLM-Redactor. Just prepend the command to your existing CLI tool. It will automatically set up the proxy and configure environment variables for the session.
Install
go install github.com/wangyihang/llm-redactor/cmd/llm-redactor-exec@latest
Usage
Prepend `llm-redactor-exec --` to your existing command:
llm-redactor-exec -- claude
llm-redactor-exec -- gemini
llm-redactor-exec -- codex
Upon exiting the session, a comprehensive audit summary will be displayed.
Use Case 2: Standalone Redacting Proxy
Use this if you want to run a persistent proxy server that multiple tools or background processes can use.
Install
go install github.com/wangyihang/llm-redactor/cmd/llm-redactor-proxy@latest
Usage
Start the proxy server:
llm-redactor-proxy --port 4000Configure your environment or tools to use the proxy:
export HTTP_PROXY=http://localhost:4000 export HTTPS_PROXY=http://localhost:4000 # Now run your tools normally claude
Audit & Logs
All detected leaks are logged to `detec
Related Skills
mcp-server-postgres
Read-only PostgreSQL database access.
Data mcp-server-sqlite
SQLite database interaction and querying.
Data mcp-server-google-maps
Google Maps integration for location data.
Data Bitbucket Data Center
---
Data Csv Data Summarizer
Automatically analyze CSV files and generate comprehensive insights with visualizations
Data Financial Services
Reference agents, skills, and data connectors for the financial-services workflows we see most — investment ba
Data