Scan .env configuration files for hardcoded secrets, weak credentials, and leaked API tokens 100% locally.