Agent skill

Credential Manager

by BetterWright in BetterWright/betterwright

Read this before any login, signup, password change, or checkout so the right credential source is used in the right order without ever exposing a secret.

MITAuto-check passed

Install Credential Manager

skills CLI
$ npx skills add BetterWright/betterwright --skill credential-manager -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install BetterWright/betterwright credential-manager --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/BetterWright/betterwright.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/credential-manager .claude/skills/credential-manager && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
credential-manager
GitHub stars
329
Token cost
~1.1k tokens
SKILL.md length
547 words
Files
1
Skills in repo
8
Repo updated
First seen
Licence
MIT

At a glance

Read this before any login, signup, password change, or checkout so the right credential source is used in the right order without ever exposing a secret.

  • Works in 4 steps: A configured external manager. If the… → BetterWright's built-in vault.… → The page itself. Focus the username… → …
  • SKILL.md covers Source order, Account choice and staged login, Signup and password rotation and Rules
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Credential Manager is an agent skill from BetterWright/betterwright. Read this before any login, signup, password change, or checkout so the right credential source is used in the right order without ever exposing a secret.

Its SKILL.md is about 1.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

The repository describes itself as: A persistent, policy-guarded Playwright browser for AI agents — network policy, encrypted credential vault, proof screenshots, and CAPTCHA solving. The licence is MIT.

Example prompts

  • “/credential-manager”

Workflow steps

4 steps, taken from the first numbered list in SKILL.md.

  1. A configured external manager. If the operator prompt explicitly names
  2. BetterWright's built-in vault. credentials.list() returns matching
  3. The page itself. Focus the username field with human.click and
  4. Ask the user through the host's question mechanism, offering the

What it can do on your machine

Read from SKILL.md and the folder at commit ec55a32. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Credential Manager loads about 1.1k tokens when it runs. Until then it costs about 43 tokens; SKILL.md has 547 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~43
When it runs · the whole SKILL.md, loaded when a task matches
~1.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from BetterWright/betterwright at commit ec55a32, republished under its MIT licence (© BetterWright). 547 words, ~1,096 tokens.

Download SKILL.mdSave it as .claude/skills/credential-manager/SKILL.md (or your agent's skills folder).
name
credential-manager
description
Read this before any login, signup, password change, or checkout so the right credential source is used in the right order without ever exposing a secret.
autoInject.keywords
login, log in, sign in, sign-in, sign up, signup, password, credential, checkout, payment, 2fa, mfa

Credential manager

Use metadata to choose an account, then let the password manager detect and fill the form. Never fetch, inspect, transform, or print a stored secret.

Source order

Work down this ladder; stop at the first source that works.

  1. A configured external manager. If the operator prompt explicitly names 1Password or Bitwarden, use its inline menu and read the matching provider pack first (../1password/SKILL.md, ../bitwarden/SKILL.md).
  2. BetterWright's built-in vault. credentials.list() returns matching metadata only: id, username, label, category, saved URL, and match mode. Filter with credentials.list({text, category}). If one account clearly fits the task, call credentials.fill({id, submit: true}). BetterWright detects the visible form and resolves/types the secret internally. MCP/Pi's browser_login and the SDK's fillCredential use the same path.
  3. The page itself. Focus the username field with human.click and re-snapshot; a session may already exist, an SSO button may be present, or the user's own password manager may surface.
  4. Ask the user through the host's question mechanism, offering the accounts you found as masked options (e.g. "account ending in 999"). This is the last resort, not the first.

Account choice and staged login

  • Search before filling. One clear match may be used directly. If several plausible accounts remain and the task does not disambiguate them, ask with usernames/labels only; never mention a secret.
  • On a username-first flow, enter the selected record's public username and advance. On the password stage call credentials.fill({id, submit: true}); password-only pages are detected.
  • Detection uses autocomplete/type/label/form context. If it reports multiple plausible forms, scope explicit usernameSelector, passwordSelector, currentPasswordSelector, confirmPasswordSelector, or submitSelector from a fresh snapshot. For an ambiguous rotation, pin current, new, and confirmation password roles together. Do not guess selectors before detection fails.
Show full SKILL.md (266 more words)Show less

Signup and password rotation

  1. Call credentials.generateAndFill({username, submit: true}). Generation returns only an opaque pending id; the encrypted provisional entry is not an active saved login yet.
  2. Verify the site's visible success state. A clicked button or request alone is not proof.
  3. On success, call credentials.commitGenerated({pendingId}). On rejection or abandonment, call credentials.discardGenerated({pendingId}).

If generation fails but returns pendingCredential, do not generate again. Inspect the visible site outcome, then commit or discard that exact recovery id. After a complete host restart with no returned id, revisit the signup site and call credentials.listPending(). Use its secret-free username, label, and timestamps to identify the attempt; never guess or auto-pick among several.

For rotation, pass the existing credential id to generateAndFill. Commit only after the site confirms the change; commit updates that item instead of creating a duplicate. Rotation preserves its URL scope, so update matchMode separately before rotating when needed. Choose an existing username/email when the site allows it; never invent an address.

Rules

  • An empty credentials.list() means no enabled item matches this site under its URL policy. Fall through the ladder instead of searching unrelated credentials.
  • Never read, print, encode, or transmit a password, card number, or one-time secret. Snapshots and results redact password inputs; keep it that way: no inputValue(), input.value, evaluate, console, or network probes on secret fields.
  • A failed fill ("info isn't correct") means the stored secret may be stale: try the next source on the ladder, then ask the user — never brute-force variants.
  • Save a task-supplied credential only when the user asks to remember it, and only after the site accepts it.

© BetterWright, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/credential-manager of BetterWright/betterwright.

Open the folder on GitHubat commit ec55a32

Compare with similar skills

Credential Manager next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Credential Manager compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Credential Manager this skillBetterWright/betterwright329—~1.1kAutomated safety check: PassMIT
Credential ManagerLeoYeAI/openclaw-master-skills2.2k—~5.8kAutomated safety check: NotesMIT
Secrets Managementdavila7/claude-code-templates32k11 repos~2kAutomated safety check: PassMIT
Project ManagerRightNow-AI/openfang18k—~960Automated safety check: PassApache-2.0
Hunting Credential Stuffing Attacksmukul975/Anthropic-Cybersecurity-Skills34k—~732Automated safety check: PassApache-2.0
Abusing Dpapi For Credential Accessmukul975/Anthropic-Cybersecurity-Skills34k—~2.7kAutomated safety check: WarnApache-2.0

Similar skills

  • Credential Manager

    LeoYeAI/openclaw-master-skills

    MANDATORY security foundation for OpenClaw. An agent skill from LeoYeAI/openclaw-master-skills.

    2.2k GitHub stars~5.8k tokensUpdated 2 mo ago
    DevOps & CloudAuto-check: notes
  • Secrets Management

    davila7/claude-code-templates

    Secure secrets management practices for CI/CD pipelines using Vault, AWS Secrets Manager, and other tools.

    32k GitHub starsUsed in 11 repos~2k tokens
    DevOps & CloudAuto-check passed
  • Project Manager

    RightNow-AI/openfang

    Project management expert for Agile, estimation, risk management, and stakeholder communication

    18k GitHub stars~960 tokensUpdated 3 mo ago
    Product & Project ManagementAuto-check passed
  • Hunting Credential Stuffing Attacks

    mukul975/Anthropic-Cybersecurity-Skills

    Detects credential stuffing attacks by analyzing authentication logs for login velocity anomalies, ASN diversity, password spray patterns, and geographic distribution of failed logins.

    34k GitHub stars~732 tokensUpdated 1 mo ago
    SecurityAuto-check passed
  • Abusing Dpapi For Credential Access

    mukul975/Anthropic-Cybersecurity-Skills

    Extract and decrypt Windows DPAPI-protected secrets (Credential Manager, browser logins/cookies, Wi-Fi credentials, KeePass keys) online or offline using SharpDPAPI, SharpChrome, Mimikatz, or…

    34k GitHub stars~2.7k tokensUpdated 1 mo ago
    SecurityAuto-check: warnings
  • Content Management Systems

    github/awesome-copilot

    Official

    Workflow for building and modifying content management systems across WordPress, Shopify, Wix, Squarespace, Drupal, WooCommerce, Joomla, HubSpot CMS Hub, Webflow, Adobe Experience Manager, and…

    40k GitHub starsUsed in 1 repo~1.3k tokens
    Sales & SupportAuto-check passed

More from BetterWright/betterwright

All 8 skills in this repo
  • Browser

    BetterWright/betterwright

    Drive a persistent, policy-guarded real web browser via the betterwright CLI.

    329 GitHub stars~1.4k tokensUpdated 8 days ago
    Auto-check passed
  • Full Stack E2E Review

    BetterWright/betterwright

    Run a rigorous end-to-end product or feature review across architecture, data, APIs, permissions, billing, tests, and real browser UX.

    329 GitHub stars~2.7k tokensUpdated 8 days ago
    Auto-check passed
  • 1password

    BetterWright/betterwright

    Read this when the browser profile has the 1Password extension and a login, signup, or payment form should be filled with it.

    329 GitHub stars~618 tokensUpdated 8 days ago
    Auto-check passed
  • Browser Console

    BetterWright/betterwright

    Diagnose browser console errors and uncaught JavaScript exceptions without dumping routine logs.

    329 GitHub stars~404 tokensUpdated 8 days ago
    Auto-check passed
  • Bitwarden

    BetterWright/betterwright

    Read this when the browser profile has the Bitwarden extension and a login, signup, or payment form should be filled with it.

    329 GitHub stars~408 tokensUpdated 8 days ago
    Auto-check passed
  • GitHub

    BetterWright/betterwright

    GitHub navigation, review, and account-context guidance for working repos, issues, and pull requests in the browser.

    329 GitHub stars~359 tokensUpdated 8 days ago
    Auto-check passed

Questions about Credential Manager

What does Credential Manager do?

Read this before any login, signup, password change, or checkout so the right credential source is used in the right order without ever exposing a secret. Credential Manager is an agent skill from BetterWright/betterwright. Read this before any login, signup, password change, or checkout so the right credential source is used in the right order without ever exposing a secret.

How do I install Credential Manager in Claude Code?

Run `npx skills add BetterWright/betterwright --skill credential-manager -a claude-code`. Or copy the skill folder (skills/credential-manager in BetterWright/betterwright) into .claude/skills/credential-manager in your project. Claude Code loads it when a task matches its description.

How do I install Credential Manager in Codex?

Run `npx skills add BetterWright/betterwright --skill credential-manager -a codex`. Or copy the skill folder (skills/credential-manager in BetterWright/betterwright) into .agents/skills/credential-manager in your project. Codex loads it when a task matches its description.

Can I use Credential Manager in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add BetterWright/betterwright --skill credential-manager -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/credential-manager, .gemini/skills/credential-manager, .github/skills/credential-manager and .opencode/skills/credential-manager in your project.

What does Credential Manager need to run?

SKILL.md names no scripts, command-line tools or credentials: Credential Manager is instructions for the agent only.

Does Credential Manager access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Credential Manager safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Credential Manager use?

Credential Manager is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Credential Manager use?

About 1.1k tokens (SKILL.md is roughly 4.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Credential Manager?

Skills that share tags, products or a category with Credential Manager: Credential Manager (LeoYeAI/openclaw-master-skills, 2.2k stars), Secrets Management (davila7/claude-code-templates, 32k stars), Project Manager (RightNow-AI/openfang, 18k stars) and Hunting Credential Stuffing Attacks (mukul975/Anthropic-Cybersecurity-Skills, 34k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Credential Manager?

BetterWright (a GitHub organization) maintains it in BetterWright/betterwright, which has 329 GitHub stars. The repository holds 8 skills in this directory. The repository was last updated on September 29, 2026.

Source: BetterWright/betterwright on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.