Search
Secrets management
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 97 | Rule pack for the environment variable reference — en/self-host/deploy/configuration/environments.mdx. | langgenius/ | 178 | — | ~2.7k | Automated safety check: Pass | CC-BY-4.0 | yesterday |
| 98 | Run or install repo security leak checks with BetterLeaks and Trivy. | instructa/ | 139 | — | ~557 | Automated safety check: Pass | No licence | 13 days ago |
| 99 | Lets the agent list and read the secrets a user has configured, such as API keys and tokens, through two tai tools instead of hardcoding credentials into code or commands. | YaoApp/ | 8.1k | — | ~415 | Automated safety check: Pass | Unknown | 3 days ago |
| 100 | 100.Dotenvx Secrets How this repo manages API secrets and the four local-run environments (local/dev/staging/prod). | kortix-ai/ | 20k | — | ~4.4k | Automated safety check: Notes | Unknown | today |
| 101 | 101.OneCLI Gateway Explains how to call external APIs through the OneCLI proxy, which injects stored credentials into outgoing HTTPS requests so the agent never handles keys. | nanocoai/ | 31k | — | ~856 | Automated safety check: Pass | MIT | yesterday |
| 102 | Reviews Claude configuration files for security, structure, and prompt engineering quality. | bitwarden/ | 155 | — | ~4.2k | Automated safety check: Pass | Unknown | 2 days ago |
| 103 | 103.Repo Audit Deep analysis of Git history: identify frequently changed hotspot files, analyze code ownership by contributor, and scan for leaked secrets. | zebbern/ | 4.7k | — | ~831 | Automated safety check: Pass | MIT | yesterday |
| 104 | Turns a leaked key, token or password into one tracked rotation task the moment it's spotted, instead of a reminder repeated every session. | avelikiy/ | 103 | — | ~884 | Automated safety check: Notes | MIT | yesterday |
| 105 | Runbook for deploying or redeploying the CodFlow Astro storefront to Vercel, with required environment variables, CLI or Git methods and checks afterwards. | bighadj22/ | 354 | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 106 | Guidance for securing Azure App Service web apps and APIs — managed identity, Easy Auth with Microsoft Entra ID, network isolation via private endpoints + VNet integration, HTTPS / TLS hardening… | vinayaklatthe/ | 175 | — | ~1.9k | Automated safety check: Pass | MIT | 3 mo ago |
| 107 | Guidance for writing idempotent Ansible playbooks, roles and inventories, with patterns for handlers, rolling deployments, Vault secrets and error handling. | RightNow-AI/ | 18k | — | ~730 | Automated safety check: Pass | Apache-2.0 | 3 mo ago |
| 108 | Security-focused source code review and SAST. An agent skill from transilienceai/communitytools. | transilienceai/ | 563 | — | ~1.2k | Automated safety check: Notes | MIT | 2 mo ago |
| 109 | Loads a missing environment variable or API key from the team's Infisical workspace into the current shell, or runs a command with all project secrets injected. | Devin-AXIS/ | 6.8k | 1 repo | ~516 | Automated safety check: Pass | Unknown | yesterday |
| 110 | A skill your agent uses when authoring, planning, or running a declarative sbxenv.yaml file for Docker Sandboxes (sbx env create/run/plan/exec/rm), even if the user just says they want to "check in… | docker/ | 552 | — | ~4k | Automated safety check: Pass | Apache-2.0 | 7 days ago |
| 111 | Audits code and infrastructure for vulnerabilities and produces a severity-rated report with locations and remediation, using SAST, dependency and secrets scans plus manual review. | Jeffallan/ | 12k | — | ~1.3k | Automated safety check: Pass | MIT | 8 days ago |
| 112 | 112.Chorus CLI How to install, configure, and use the chorus CLI — install it, manage agents with chorus agents (add/remove/list), the connection environment variables, and MCP operations via chorus mcp. | Chorus-AIDLC/ | 1.2k | — | ~1.2k | Automated safety check: Notes | AGPL-3.0 | 2 days ago |
| 113 | 113.Project Health All-in-one project configuration and health management. An agent skill from jezweb/claude-skills. | jezweb/ | 1.1k | — | ~3k | Automated safety check: Pass | MIT | 2 days ago |
| 114 | Installs Codex as an agent provider for NanoClaw groups, with streaming, MCP tools, server-side history and vault-only credentials, next to or instead of Claude. | nanocoai/ | 31k | — | ~2.3k | Automated safety check: Notes | MIT | yesterday |
| 115 | Rules for working behind Iron Proxy: connect external accounts without handling raw tokens, treat blocked requests as policy outcomes, and never claim a connection before it works. | nanocoai/ | 31k | — | ~598 | Automated safety check: Pass | MIT | yesterday |
| 116 | 116.Sandbox Check Sandbox audit that probes, from inside a live coding-agent session, what the agent can really reach: secret files it can open, secret-like environment variables, files that git, the shell, the… | RyanAlberts/ | 1.1k | — | ~3.1k | Automated safety check: Notes | MIT | 2 days ago |
| 117 | 117.Pre Commit Audit Deliver a fast pre-commit safety scan: file size, anonymity (author / affiliation strings in tex/bib), hardcoded secrets, and invisible-Unicode carriers. | flonat/ | 146 | — | ~2.8k | Automated safety check: Notes | MIT | 12 days ago |
| 118 | 118.Env Setup Create or update Novu environment variables in the user's project safely (never expose the secret key to the client). | novuhq/ | 40k | — | ~464 | Automated safety check: Notes | Unknown | yesterday |
| 119 | Bitwarden's canonical pattern for using a secret inside a GitHub Actions job: authenticate to Azure with the OIDC triad, pull the secret from an Azure Key Vault via the bitwarden/gh-actions… | bitwarden/ | 155 | — | ~4k | Automated safety check: Pass | Unknown | 2 days ago |
| 120 | Azure Key Vault Secrets Java SDK for secret management. An agent skill from microsoft/skills. | microsoft/ | 3.1k | 5 repos | ~3.1k | Automated safety check: Pass | MIT | 2 days ago |
| 121 | How to monitor and fix security issues in Massing — CodeQL alerts, dependency audits, secret scanning, and ReDoS/XXE fixes. | ibuilder/ | 122 | — | ~1.7k | Automated safety check: Pass | MIT | 2 days ago |
| 122 | 122.Chorus CLI How to install, configure, and use the chorus CLI — install it, manage agents with chorus agents (add/remove/list), the connection environment variables, and MCP operations via chorus mcp. | Chorus-AIDLC/ | 1.2k | — | ~915 | Automated safety check: Pass | AGPL-3.0 | 2 days ago |
| 123 | Connect to the running Redmine instance and log in via the Playwright MCP browser, using REDMINEPLAYRIGHTURL/REDMINEPLAYRIGHTUSER/REDMINEPLAYRIGHTPASSWORD environment variables. | haru/ | 106 | — | ~796 | Automated safety check: Pass | MIT | today |
| 124 | Ghost Security - Secrets and credentials scanner. An agent skill from ghostsecurity/skills. | ghostsecurity/ | 409 | — | ~1.2k | Automated safety check: Notes | Apache-2.0 | 13 days ago |
| 125 | 125.Pinact Read pinact's documentation with pinact docs list and pinact docs show <name before answering. | saleor/ | 162 | — | ~685 | Automated safety check: Pass | Unknown | 4 days ago |
| 126 | Deploys a production n8n instance to a fresh Linux server over SSH with Docker Compose and Caddy HTTPS, in single or queue mode, and covers updates, backups and hardening. | czlonkowski/ | 6.4k | — | ~3.5k | Automated safety check: Notes | MIT | 2 days ago |
| 127 | 127.Quarkus Security Quarkus security implementation patterns: JWT and OIDC authentication, @RolesAllowed RBAC and SecurityIdentity checks, Bean Validation and custom validators, parameterized Panache queries, BCrypt… | affaan-m/ | 277k | 1 repo | ~3.1k | Automated safety check: Pass | MIT | today |
| 128 | 128.Azure Keyvault Manage secrets and certificates in Azure Key Vault. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 2 repos | ~3.2k | Automated safety check: Pass | MIT | yesterday |
| 129 | Build applications using Azure App Configuration SDK for JavaScript (@azure/app-configuration). | microsoft/ | 3.1k | 5 repos | ~2.2k | Automated safety check: Pass | MIT | 2 days ago |
| 130 | Azure Key Vault Keys SDK for .NET. An agent skill from microsoft/skills. | microsoft/ | 3.1k | 5 repos | ~3.1k | Automated safety check: Pass | MIT | 2 days ago |
| 131 | 131.Pi Agent Builds with and operates Pi, the minimal terminal coding harness. | K-Dense-AI/ | 48k | 1 repo | ~2.1k | Automated safety check: Pass | MIT | 6 days ago |
| 132 | Emulates any Aspire CLI build identity (channel, version, commit, package source) from a locally built CLI using ASPIRECLI environment variables and the install sidecar, so a reported bug can be… | microsoft/ | 6.4k | — | ~6.4k | Automated safety check: Pass | MIT | today |
| 133 | A skill your agent uses when the user asks to set up secret management infrastructure, integrate HashiCorp Vault, configure cloud secret stores (AWS Secrets Manager, Azure Key Vault, GCP Secret… | alirezarezvani/ | 28k | 1 repo | ~3.6k | Automated safety check: Notes | MIT | 1 mo ago |
| 134 | Detect hardcoded secrets in code or configuration accessible to the target agent. | Tencent/ | 6.8k | — | ~849 | Automated safety check: Notes | Apache-2.0 | 2 days ago |
| 135 | Working on RedAmon's supply-chain scanner (offline OSV + GuardDog + retire + trufflehog): the offline OSV database that the scan path does not bootstrap, the world-readable requirement for the… | samugit83/ | 3k | — | ~855 | Automated safety check: Pass | MIT | 3 days ago |
| 136 | Expert-level Windows batch file (.bat/.cmd) skill for writing, debugging, and maintaining CMD scripts. | github/ | 40k | 1 repo | ~4.3k | Automated safety check: Pass | MIT | 2 days ago |
| 137 | 137.Static Security Static security review for Flutter mobile apps and Dart code: hardcoded secrets, insecure storage, unsafe network calls, leaky logs, vulnerable dependencies. | VeryGoodOpenSource/ | 170 | — | ~4.4k | Automated safety check: Notes | MIT | 5 days ago |
| 138 | Implements authentication, authorization, encryption, secrets management, and security hardening patterns. | CloudAI-X/ | 1.4k | — | ~3.6k | Automated safety check: Notes | MIT | 5 days ago |
| 139 | Detect hardcoded sensitive data (API keys, access tokens, private keys, passwords, etc.) in publicly accessible code — frontend JavaScript, mobile apps, client-side bundles, and HTML templates. | utkusen/ | 1.3k | — | ~6.5k | Automated safety check: Notes | MIT | 6 mo ago |
| 140 | Gives NanoClaw agents the ability to deploy web apps to Vercel by installing the Vercel CLI in agent containers and wiring up credential injection through OneCLI. | nanocoai/ | 31k | — | ~1.5k | Automated safety check: Warn | MIT | yesterday |
| 141 | 141.Vercel CLI Deploy apps to Vercel. An agent skill from nanocoai/nanoclaw. | nanocoai/ | 31k | — | ~1.4k | Automated safety check: Warn | MIT | yesterday |
| 142 | Guide for configuring and managing GitHub secret scanning, push protection, custom patterns, and secret alert remediation. | github/ | 40k | 1 repo | ~2.4k | Automated safety check: Pass | MIT | 2 days ago |
| 143 | How to build and run GPU targets under Buck in fbcode. An agent skill from facebookexperimental/triton. | facebookexperimental/ | 201 | — | ~998 | Automated safety check: Pass | MIT | today |
| 144 | 144.Specx Settings Add runtime configuration to specx Python services with pydantic-settings. | maksimzayats/ | 202 | — | ~707 | Automated safety check: Notes | MIT | 2 mo ago |