Sops Encryption
sickn33/agentic-awesome-skills
Encrypt files and configs with Mozilla SOPS. An agent skill from sickn33/agentic-awesome-skills.
View, edit, and set encrypted credentials in an Output.ai project.
$ npx skills add growthxai/output --skill output-credentials-edit -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install growthxai/output output-credentials-edit --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/growthxai/output.git skills-src && mkdir -p .claude/skills && cp -r skills-src/coding_assistants/claude/plugins/outputai/skills/output-credentials-edit .claude/skills/output-credentials-edit && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "output-credentials-edit" agent skill from https://github.com/growthxai/output/tree/main/coding_assistants/claude/plugins/outputai/skills/output-credentials-edit into .claude/skills/output-credentials-edit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "output-credentials-edit", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/growthxai/output/tree/main/coding_assistants/claude/plugins/outputai/skills/output-credentials-editType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add growthxai/output --skill output-credentials-edit -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install growthxai/output output-credentials-edit --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/growthxai/output.git skills-src && mkdir -p .agents/skills && cp -r skills-src/coding_assistants/claude/plugins/outputai/skills/output-credentials-edit .agents/skills/output-credentials-edit && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "output-credentials-edit" agent skill from https://github.com/growthxai/output/tree/main/coding_assistants/claude/plugins/outputai/skills/output-credentials-edit into .agents/skills/output-credentials-edit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "output-credentials-edit", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add growthxai/output --skill output-credentials-edit -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install growthxai/output output-credentials-edit --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/growthxai/output.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/coding_assistants/claude/plugins/outputai/skills/output-credentials-edit .cursor/skills/output-credentials-edit && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "output-credentials-edit" agent skill from https://github.com/growthxai/output/tree/main/coding_assistants/claude/plugins/outputai/skills/output-credentials-edit into .cursor/skills/output-credentials-edit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "output-credentials-edit", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/growthxai/output.git --path coding_assistants/claude/plugins/outputai/skills/output-credentials-edit--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add growthxai/output --skill output-credentials-edit -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install growthxai/output output-credentials-edit --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/growthxai/output.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/coding_assistants/claude/plugins/outputai/skills/output-credentials-edit .gemini/skills/output-credentials-edit && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "output-credentials-edit" agent skill from https://github.com/growthxai/output/tree/main/coding_assistants/claude/plugins/outputai/skills/output-credentials-edit into .gemini/skills/output-credentials-edit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "output-credentials-edit", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install growthxai/output output-credentials-editInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add growthxai/output --skill output-credentials-edit -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/growthxai/output.git skills-src && mkdir -p .github/skills && cp -r skills-src/coding_assistants/claude/plugins/outputai/skills/output-credentials-edit .github/skills/output-credentials-edit && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "output-credentials-edit" agent skill from https://github.com/growthxai/output/tree/main/coding_assistants/claude/plugins/outputai/skills/output-credentials-edit into .github/skills/output-credentials-edit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "output-credentials-edit", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add growthxai/output --skill output-credentials-edit -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install growthxai/output output-credentials-edit --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/growthxai/output.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/coding_assistants/claude/plugins/outputai/skills/output-credentials-edit .opencode/skills/output-credentials-edit && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "output-credentials-edit" agent skill from https://github.com/growthxai/output/tree/main/coding_assistants/claude/plugins/outputai/skills/output-credentials-edit into .opencode/skills/output-credentials-edit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "output-credentials-edit", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
output-credentials-editView, edit, and set encrypted credentials in an Output.ai project.
Output Credentials Edit is an agent skill from growthxai/output. View, edit, and set encrypted credentials in an Output.ai project. Use when adding secrets, updating API keys, verifying credential values, or retrieving a specific credential.
Its SKILL.md is about 1.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
The repository describes itself as: The open-source TypeScript framework for building AI workflows and agents. Designed for Claude Code describe what you want, Claude builds it, with all the best practices already… The licence is Apache-2.0.
Read from SKILL.md and the folder at commit ff9e1ab. It shows what the files ask for, not the result of running them.
Pre-approves these tools, so the agent can use them without asking each time:
ReadBashGlobFrom allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
npxFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use npx, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names these keys or tokens, usually read from environment variables:
OUTPUT_CREDENTIALS_KEYFrom names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Output Credentials Edit loads about 1.1k tokens when it runs. Until then it costs about 50 tokens; SKILL.md has 307 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check noted patterns worth knowing about, such as sudo or a known installer.
allowed-tools: Read, Bash, GlobAutomated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from growthxai/output at commit ff9e1ab, republished under its Apache-2.0 licence (© growthxai). 307 words, ~1,090 tokens.
.claude/skills/output-credentials-edit/SKILL.md (or your agent's skills folder).$EDITOR)# Edit global credentials
npx output credentials edit
# Edit environment-specific
npx output credentials edit -e production
npx output credentials edit -e development
# Edit per-workflow credentials
npx output credentials edit -w my_workflowThe file is decrypted to a temp file, opened in $EDITOR, then re-encrypted on save. The temp file is securely wiped (overwritten with null bytes) after closing.
Only production and development are valid environments: the worker picks the file from NODE_ENV and ignores any other name.
# Set a single credential by dot-notation path
npx output credentials set anthropic.api_key sk-ant-...
npx output credentials set openai.api_key sk-... -e production
npx output credentials set stripe.secret_key sk_live_... -w payment_processingPrefer set in non-interactive sessions, where $EDITOR can't be used. Intermediate keys are created as needed. When the new value would replace an object with a string (or the reverse), set asks for confirmation; pass -y to skip it.
# Show global credentials (plaintext — use carefully)
npx output credentials show
# Show environment-specific
npx output credentials show -e production
# Show per-workflow
npx output credentials show -w my_workflow# Get a single credential by dot-notation path
npx output credentials get anthropic.api_key
npx output credentials get aws.region
npx output credentials get stripe.secret_key -w payment_processingReturns the raw string value (or JSON for nested objects).
Credentials are stored as structured YAML with dot-notation access:
anthropic:
api_key: sk-ant-...
openai:
api_key: sk-...
aws:
region: us-east-1
access_key_id: AKIA...
secret_access_key: ...
stripe:
secret_key: sk_live_...
webhook_secret: whsec_...import { credentials } from '@outputai/core/credentials';
// Safe read — returns undefined if not found
const region = credentials.get('aws.region');
// Read with default
const region = credentials.get('aws.region', 'us-east-1');
// Strict read — throws MissingCredentialError if not found
const apiKey = credentials.require('anthropic.api_key');Per-workflow credentials deep-merge over global credentials at runtime. Workflow values take precedence:
# Global: anthropic.api_key = "sk-ant-global"
# Workflow: anthropic.api_key = "sk-ant-workflow"
# Runtime result: credentials.get('anthropic.api_key') → "sk-ant-workflow"| Error | Cause | Fix |
|---|---|---|
MissingKeyError | Key file not found and env var not set | Run output credentials init or set OUTPUT_CREDENTIALS_KEY |
MissingCredentialError | Path not found in credentials | Add the value with npx output credentials set or edit |
InvalidCredentialsKeyError | Key doesn't match the encrypted file, or the file is corrupted | Use the key the file was encrypted with, or re-init with --force (discards existing values) |
MalformedCredentialsKeyError | Key isn't exactly 64 hex characters | Check the key for typos, whitespace, or truncation |
npx output credentials show prints expected valuesnpx output credentials get anthropic.api_key returns the correct keyoutput-credentials-init — Create credentials files for the first timeoutput-credentials-env-vars — Automatically wire credentials to env varsoutput-dev-credentials — Full credentials system reference© growthxai, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in coding_assistants/claude/plugins/outputai/skills/output-credentials-edit of growthxai/output.
Open the folder on GitHubat commit ff9e1ab
Output Credentials Edit next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Output Credentials Edit this skillgrowthxai/output | 442 | — | ~1.1k | Automated safety check: Notes | Apache-2.0 | |
| Sops Encryptionsickn33/agentic-awesome-skills | 47k | 1 repos | ~751 | Automated safety check: Pass | MIT | |
| Credentialsgoogle-deepmind/science-skills | 3.2k | — | ~1k | Automated safety check: Notes | Apache-2.0 | |
| Credentialsalsk1992/CloddsBot | 2.9k | — | ~1.4k | Automated safety check: Pass | MIT | |
| Implementing Envelope Encryption With AWS Kmsmukul975/Anthropic-Cybersecurity-Skills | 34k | — | ~954 | Automated safety check: Pass | Apache-2.0 | |
| Auditing Warehouse View HealthPostHog/posthog | 40k | — | ~1.5k | Automated safety check: Pass | Custom licence |
sickn33/agentic-awesome-skills
Encrypt files and configs with Mozilla SOPS. An agent skill from sickn33/agentic-awesome-skills.
google-deepmind/science-skills
Instructions for handling API keys and credentials safely, verifying their presence, and prompting the user to add them if missing using a safe protocol.
alsk1992/CloddsBot
Secure credential management for trading platforms. An agent skill from alsk1992/CloddsBot.
mukul975/Anthropic-Cybersecurity-Skills
Implements envelope encryption with AWS KMS, encrypting data locally with a data encryption key (DEK) and protecting that DEK with a KMS-managed key (KEK), covering the encrypt/decrypt flow, KMS key…
PostHog/posthog
Audit the health of a PostHog project's materialized views (saved queries) — find every failed materialization and flag unused or stale materialized views that cost storage and compute.
mukul975/Anthropic-Cybersecurity-Skills
Analyzes encryption algorithms, key management, and file encryption routines used by ransomware families to assess decryption feasibility, identify implementation weaknesses, and support recovery…
growthxai/output
Zod schema constraints that Anthropic rejects or silently ignores when sent as structured-output tool definitions via aiSdk.Output.object().
growthxai/output
Implement an Output SDK workflow from a plan document. An agent skill from growthxai/output.
growthxai/output
Wire encrypted credentials to environment variables using the credential: convention.
growthxai/output
Initialize encrypted credentials for an Output.ai project. An agent skill from growthxai/output.
growthxai/output
Debug Output SDK workflow issues. An agent skill from growthxai/output.
growthxai/output
Use the Agent class for multi-step tool loops, conversation history, streaming progress, and reusable LLM agents.
View, edit, and set encrypted credentials in an Output.ai project. Output Credentials Edit is an agent skill from growthxai/output.ai project.
Output Credentials Edit fits situations like: updating API keys; verifying credential values; retrieving a specific credential.
Run `npx skills add growthxai/output --skill output-credentials-edit -a claude-code`. Or copy the skill folder (coding_assistants/claude/plugins/outputai/skills/output-credentials-edit in growthxai/output) into .claude/skills/output-credentials-edit in your project. Claude Code loads it when a task matches its description.
Run `npx skills add growthxai/output --skill output-credentials-edit -a codex`. Or copy the skill folder (coding_assistants/claude/plugins/outputai/skills/output-credentials-edit in growthxai/output) into .agents/skills/output-credentials-edit in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add growthxai/output --skill output-credentials-edit -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/output-credentials-edit, .gemini/skills/output-credentials-edit, .github/skills/output-credentials-edit and .opencode/skills/output-credentials-edit in your project.
Going by SKILL.md and its folder, Output Credentials Edit needs the command-line tools its instructions call (npx) and credentials named OUTPUT_CREDENTIALS_KEY. Our summary lists: Node.js; A credential in OUTPUT_CREDENTIALS_KEY. Its frontmatter pre-approves these tools: Read, Bash, Glob.
SKILL.md contains no URLs. Its commands use npx, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found notes only (pre-approves every shell command (allowed-tools: bash)), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.
Output Credentials Edit is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.1k tokens (SKILL.md is roughly 4.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Output Credentials Edit: Sops Encryption (sickn33/agentic-awesome-skills, 47k stars), Credentials (google-deepmind/science-skills, 3.2k stars), Credentials (alsk1992/CloddsBot, 2.9k stars) and Implementing Envelope Encryption With AWS Kms (mukul975/Anthropic-Cybersecurity-Skills, 34k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
growthxai (a GitHub organization) maintains it in growthxai/output, which has 442 GitHub stars. The repository holds 52 skills in this directory. The repository was last updated on October 8, 2026.
Source: growthxai/output on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.