Agent skill

Get Env Var from Infisical

by Devin-AXIS in Devin-AXIS/iPolloWork

Loads a missing environment variable or API key from the team's Infisical workspace into the current shell, or runs a command with all project secrets injected.

Custom licenceAuto-check passedDevOps & Cloud

Install Get Env Var from Infisical

skills CLI
$ npx skills add Devin-AXIS/iPolloWork --skill get-env-var -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install Devin-AXIS/iPolloWork get-env-var --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/Devin-AXIS/iPolloWork.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.opencode/skills/get-env-var .claude/skills/get-env-var && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
get-env-var
GitHub stars
6.7k
Used in
1 other repo
Token cost
~516 tokens
SKILL.md length
249 words
Files
1
Skills in repo
30
Repo updated
First seen
Licence
Custom licence

At a glance

Loads a missing environment variable or API key from the team's Infisical workspace into the current shell, or runs a command with all project secrets injected.

  • A script fails because an environment variable is not set
  • SKILL.md covers When to use, Setup (once per machine), Fetch one secret into the… and Inject everything into a command, plus 1 more section
  • Calls brew; needs BLOB_READ_WRITE_TOKEN and INFISICAL_TOKEN
  • A token or API key is missing from the shell environment

What it does

When a command needs a token or API key that is not set, this skill fetches it from the team's Infisical workspace instead of asking you to paste it. For one secret, the agent exports it inside command substitution using the Infisical CLI's plain and silent flags. It can add an environment slug or a folder path, and the repository's tracked `.infisical.json` links the project and makes `dev` the default environment. To expose every project secret to a single process only, the agent runs that command through `infisical run`.

Setup is once per machine: install the CLI with Homebrew on macOS, check login with `infisical user get`, and run `infisical login` if that fails. Non-interactive runs such as CI use an `INFISICAL_TOKEN` machine identity. The rules are strict: never print or log a secret value, never write one to a file, commit message, pull request body or comment, and if a secret does not exist, stop and tell you which name and environment to add rather than inventing a value.

When your agent uses it

  • A script fails because an environment variable is not set
  • A token or API key is missing from the shell environment
  • Loading secrets from Infisical before running a command
  • Running one process with all project secrets injected

Example prompts

  • “The upload script says BLOB_READ_WRITE_TOKEN is missing. Fetch it from Infisical and rerun it.”
  • “Load the staging API key from Infisical into my shell without printing it.”
  • “Run the integration tests through Infisical so they get the project secrets.”

Requirements

  • The Infisical CLI (installed with Homebrew on macOS)
  • An Infisical login, or an INFISICAL_TOKEN machine identity for CI
  • A repository linked with `.infisical.json`

What it can do on your machine

Read from SKILL.md and the folder at commit 71a74ad. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • brew

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • BLOB_READ_WRITE_TOKEN
    • INFISICAL_TOKEN

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Get Env Var from Infisical loads about 516 tokens when it runs. Until then it costs about 59 tokens; SKILL.md has 249 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~59
When it runs · the whole SKILL.md, loaded when a task matches
~516

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Its licence (Custom licence) doesn't allow us to republish the file, so here is its outline and opening line. It has 249 words (~516 tokens).

“Fetch a secret from the team's Infisical workspace into the current shell so the next command can use it.”

— opening of SKILL.md by Devin-AXIS, Custom licence
name
get-env-var

Read the full SKILL.md on GitHub

Files

Just SKILL.md in .opencode/skills/get-env-var of Devin-AXIS/iPolloWork.

Open the folder on GitHubat commit 71a74ad

Used in 1 other repository

We found 1 copy of this SKILL.md (exact, near-identical or edited) in other folders, from 1 other GitHub owner. This page covers the copy in Devin-AXIS/iPolloWork, which our catalogue first saw on October 7, 2026.

Compare with similar skills

Get Env Var from Infisical next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Get Env Var from Infisical compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Get Env Var from Infisical this skillDevin-AXIS/iPolloWork6.7k1 repos~516Automated safety check: PassCustom licence
Secure GitHub Actionsvechain/x-app-template450—~1.2kAutomated safety check: PassMIT
Detecting Compromised Cloud Credentialsmukul975/Anthropic-Cybersecurity-Skills34k—~3.9kAutomated safety check: PassApache-2.0
Implementing Azure Defender For Cloudmukul975/Anthropic-Cybersecurity-Skills34k—~3.1kAutomated safety check: PassApache-2.0
Performing Container Security Scanning With Trivymukul975/Anthropic-Cybersecurity-Skills34k—~818Automated safety check: PassApache-2.0
Azure Keyvault Pymicrosoft/skills3.1k—~2.4kAutomated safety check: PassMIT

Similar skills

  • Secure GitHub Actions

    vechain/x-app-template

    Secure GitHub Actions workflows against supply-chain, privilege, and shell-injection risks.

    450 GitHub stars~1.2k tokensUpdated 2 mo ago
    DevOps & CloudAuto-check passed
  • Detecting Compromised Cloud Credentials

    mukul975/Anthropic-Cybersecurity-Skills

    Detect compromised cloud credentials across AWS, Azure, and GCP by analyzing anomalous API activity, impossible-travel patterns, and credential-stuffing indicators using GuardDuty, Microsoft…

    34k GitHub stars~3.9k tokensUpdated 1 mo ago
    DevOps & CloudAuto-check passed
  • Implementing Azure Defender For Cloud

    mukul975/Anthropic-Cybersecurity-Skills

    Enable Microsoft Defender for Cloud (CSPM + CWPP) across VMs, containers, SQL, storage, and Key Vault, using Azure Policy for evaluation, Log Analytics for telemetry, Azure Arc for hybrid coverage…

    34k GitHub stars~3.1k tokensUpdated 1 mo ago
    DevOps & CloudAuto-check passed
  • Performing Container Security Scanning With Trivy

    mukul975/Anthropic-Cybersecurity-Skills

    Runs Trivy across every target type it supports - container images, filesystems, Git repositories, and Kubernetes clusters - for OS and dependency vulnerabilities, IaC misconfiguration, exposed…

    34k GitHub stars~818 tokensUpdated 1 mo ago
    DevOps & CloudAuto-check passed
  • Azure Keyvault Py

    microsoft/skills

    Official

    Azure Key Vault SDK for Python. An agent skill from microsoft/skills.

    3.1k GitHub stars~2.4k tokensUpdated today
    DevOps & CloudAuto-check passed
  • Apex Azure Compliance

    jonathan-vella/apex

    ANALYSIS SKILL — Azure compliance and security auditing: best practices, Key Vault expiration monitoring, resource validation.

    217 GitHub stars~1.6k tokensUpdated today
    DevOps & CloudAuto-check passed

More from Devin-AXIS/iPolloWork

All 30 skills in this repo
  • A code-change gate for the iPolloWork repository: search and reuse first, keep one source of truth, justify every new file or dependency, and audit the change.

    6.7k GitHub stars~2.7k tokensUpdated today
    Auto-check passed
  • Reproduces iPolloWork enterprise TLS behavior in a Daytona Windows sandbox by installing a fake corporate CA and proving the app and its runtimes use the OS trust store.

    6.7k GitHub starsUsed in 1 repo~3.2k tokens
    Auto-check passed
  • Build iPolloWork Templates

    Devin-AXIS/iPolloWork

    Builds a reusable iPolloWork template for Design, Slides or PPT, or HyperFrames Video through conversation, keeping a manifest, reusable variables and a validated package current.

    6.7k GitHub stars~925 tokensUpdated today
    Auto-check passed
  • OpenCode Plugin Creator

    Devin-AXIS/iPolloWork

    Scaffolds an OpenCode plugin for iPolloWork with the right async factory shape, zod-based tool definitions and hook registration, and explains where to place and register it.

    6.7k GitHub starsUsed in 1 repo~1.3k tokens
    Auto-check passed
  • Agent-First Screenshots

    Devin-AXIS/iPolloWork

    Has an agent drive the real app through CDP and capture clean, defect-free product screenshots, gated by DOM, pixel and vision checks in a loop.

    6.7k GitHub stars~1.2k tokensUpdated today
    Auto-check passed
  • Daytona Chrome CDP

    Devin-AXIS/iPolloWork

    Launches a standalone Chrome or Chromium in a Daytona sandbox and drives it over CDP for web sign-in, OAuth and other flows that should bypass the Electron app.

    6.7k GitHub stars~582 tokensUpdated today
    Auto-check passed

Questions about Get Env Var from Infisical

What does Get Env Var from Infisical do?

Loads a missing environment variable or API key from the team's Infisical workspace into the current shell, or runs a command with all project secrets injected. When a command needs a token or API key that is not set, this skill fetches it from the team's Infisical workspace instead of asking you to paste it. For one secret, the agent exports it inside command substitution using the Infisical CLI's plain and silent flags.

When should I use Get Env Var from Infisical?

Get Env Var from Infisical fits situations like: A script fails because an environment variable is not set; A token or API key is missing from the shell environment; loading secrets from Infisical before running a command; running one process with all project secrets injected.

How do I install Get Env Var from Infisical in Claude Code?

Run `npx skills add Devin-AXIS/iPolloWork --skill get-env-var -a claude-code`. Or copy the skill folder (.opencode/skills/get-env-var in Devin-AXIS/iPolloWork) into .claude/skills/get-env-var in your project. Claude Code loads it when a task matches its description.

How do I install Get Env Var from Infisical in Codex?

Run `npx skills add Devin-AXIS/iPolloWork --skill get-env-var -a codex`. Or copy the skill folder (.opencode/skills/get-env-var in Devin-AXIS/iPolloWork) into .agents/skills/get-env-var in your project. Codex loads it when a task matches its description.

Can I use Get Env Var from Infisical in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Devin-AXIS/iPolloWork --skill get-env-var -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/get-env-var, .gemini/skills/get-env-var, .github/skills/get-env-var and .opencode/skills/get-env-var in your project.

What does Get Env Var from Infisical need to run?

Going by SKILL.md and its folder, Get Env Var from Infisical needs the command-line tools its instructions call (brew) and credentials named BLOB_READ_WRITE_TOKEN and INFISICAL_TOKEN. Our summary lists: The Infisical CLI (installed with Homebrew on macOS); An Infisical login, or an INFISICAL_TOKEN machine identity for CI; A repository linked with `.infisical.json`.

Does Get Env Var from Infisical access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Get Env Var from Infisical safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Get Env Var from Infisical use?

Get Env Var from Infisical has a licence file (the repository's licence) that doesn't match a standard licence. Read it on GitHub before reusing the skill.

How many tokens does Get Env Var from Infisical use?

About 516 tokens (SKILL.md is roughly 2.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Get Env Var from Infisical?

Skills that share tags, products or a category with Get Env Var from Infisical: Secure GitHub Actions (vechain/x-app-template, 450 stars), Detecting Compromised Cloud Credentials (mukul975/Anthropic-Cybersecurity-Skills, 34k stars), Implementing Azure Defender For Cloud (mukul975/Anthropic-Cybersecurity-Skills, 34k stars) and Performing Container Security Scanning With Trivy (mukul975/Anthropic-Cybersecurity-Skills, 34k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Get Env Var from Infisical?

Devin-AXIS (a GitHub user) maintains it in Devin-AXIS/iPolloWork, which has 6,717 GitHub stars. The repository holds 30 skills in this directory. The repository was last updated on October 6, 2026.

Source: Devin-AXIS/iPolloWork on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.