Switch the active credential profile to a different client brand, validating each configured platform's API keys, env vars, and token expiry before anything runs — preventing cross-client data leaks…

MITAuto-check passedMarketing & SEO

Install Credential Switch

skills CLI
$ npx skills add indranilbanerjee/digital-marketing-pro --skill credential-switch -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install indranilbanerjee/digital-marketing-pro credential-switch --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/indranilbanerjee/digital-marketing-pro.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/credential-switch .claude/skills/credential-switch && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
credential-switch
GitHub stars
859
Used in
1 other repo
Token cost
~2.3k tokens
SKILL.md length
1,062 words
Files
1
Skills in repo
162
Repo updated
First seen
Licence
MIT

At a glance

Switch the active credential profile to a different client brand, validating each configured platform's API keys, env vars, and token expiry before anything runs — preventing cross-client data leaks…

  • Works in 4 steps: Present the validation summary — target… → If validation is clean and only one… → Never proceed on ambiguous input. Never… → …
  • /digital-marketing-pro:credential-switch
  • SKILL.md covers Purpose, Execution gate (MANDATORY —…, Input Required and Process, plus 2 more sections
  • Calls python

What it does

Credential Switch is an agent skill from indranilbanerjee/digital-marketing-pro. Switch the active credential profile to a different client brand, validating each configured platform's API keys, env vars, and token expiry before anything runs — preventing cross-client data leaks and misrouted ad spend. Outputs a per-platform validation report plus a logged switch confirmation with audit trail. Triggers on "/digital-marketing-pro:credential-switch", "switch to the other client's account", "activate Acme's API keys", "are the right credentials active", "change which brand we're working on"…

Its SKILL.md is about 2.3k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Marketing & SEO, covering Paid advertising. The repository describes itself as: An open-source AI marketing operating system for strategy, SEO, AEO/GEO, paid media, content, CRM, and analytics - grounded in brand context, human approval, and verifiable… The licence is MIT.

When your agent uses it

  • /digital-marketing-pro:credential-switch
  • Switch to the other clients account
  • Activate Acmes API keys
  • Are the right credentials active

Example prompts

  • “/digital-marketing-pro:credential-switch”
  • “switch to the other client”
  • “activate Acme”
  • “/credential-switch”

Requirements

  • Python 3

Workflow steps

4 steps, taken from the first numbered list in SKILL.md.

  1. Present the validation summary — target brand, per-platform credential status, and any warnings — as an Execution Summary.
  2. If validation is clean and only one client credential profile is configured, the switch may proceed automatically. If more than one client…
  3. Never proceed on ambiguous input. Never auto-retry a failed switch.
  4. When confirmation is required, record it with python "${CLAUDE_PLUGIN_ROOT}/scripts/approval-manager.py" --brand {slug} --action…

What it can do on your machine

Read from SKILL.md and the folder at commit 3343924. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • python

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Credential Switch loads about 2.3k tokens when it runs. Until then it costs about 170 tokens; SKILL.md has 1,062 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~170
When it runs · the whole SKILL.md, loaded when a task matches
~2.3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from indranilbanerjee/digital-marketing-pro at commit 3343924, republished under its MIT licence (© indranilbanerjee). 1,062 words, ~2,297 tokens.

Download SKILL.mdSave it as .claude/skills/credential-switch/SKILL.md (or your agent's skills folder).
name
credential-switch
description
Switch the active credential profile to a different client brand, validating each configured platform's API keys, env vars, and token expiry before anything runs — preventing cross-client data leaks and misrouted ad spend. Outputs a per-platform validation report plus a logged switch confirmation with audit trail. Triggers on "/digital-marketing-pro:credential-switch", "switch to the other client's account", "activate Acme's API keys", "are the right credentials active", "change which brand we're working on". Reads brand and credential profiles under ~/.claude-marketing/ and pairs with /digital-marketing-pro:client-onboarding when a profile is missing.
disable-model-invocation
false
argument-hint
[brand-slug]

/digital-marketing-pro:credential-switch

Purpose

Switch the active credential profile to a different brand for multi-client agency management. Validates all platform connections and reports which services are available for the target brand. Ensures the correct API keys, tokens, and environment variables are active before executing any platform operations — preventing cross-client data leakage, misrouted ad spend, or accidental operations on the wrong account.

Execution gate (MANDATORY — cannot be skipped)

  1. Present the validation summary — target brand, per-platform credential status, and any warnings — as an Execution Summary.
  2. If validation is clean and only one client credential profile is configured, the switch may proceed automatically. If more than one client profile exists, or any warning / missing / expiring credential is present, the user must type yes (or an equivalent explicit approval) — ANY other input cancels.
  3. Never proceed on ambiguous input. Never auto-retry a failed switch.
  4. When confirmation is required, record it with python "${CLAUDE_PLUGIN_ROOT}/scripts/approval-manager.py" --brand {slug} --action create-approval --data '{"risk_level":"medium","summary":"credential switch to {slug}"}' before switching, then python "${CLAUDE_PLUGIN_ROOT}/scripts/approval-manager.py" --brand {slug} --action mark-executed --id {approval_id} after the switch verifies.

Input Required

The user must provide (or will be prompted for):

  • Target brand slug: The brand slug to switch credentials to — must match a configured brand in ~/.claude-marketing/brands/ with a corresponding credential profile in ~/.claude-marketing/credentials/
  • Validation depth (optional): One of:
    • Quick: Check that env vars exist and are non-empty — fast, no API calls
    • Full: Test live API connectivity and token validity for each configured platform — slower but confirms actual access
    • Defaults to quick for faster switching
  • Force switch (optional): If the target profile has missing or expired credentials, whether to switch anyway with warnings or abort entirely — defaults to abort on missing critical credentials (ad platforms, analytics)
  • Reason (optional): Brief note for the switch log — helps with audit trail when multiple team members share the system (e.g., "Starting monthly reporting for Acme Corp")
  • Platforms to validate (optional): Specific platforms to validate instead of all — useful when you only need certain integrations for the current task (e.g., "google-ads, google-analytics" for a paid media session)

Process

  1. Check current context: Read ~/.claude-marketing/brands/_active-brand.json to identify the currently active brand, and ~/.claude-marketing/credentials/_active-profile.json for the current credential profile. Display current state before switching.
  2. Verify target brand exists: Confirm the target brand slug has a configured profile at ~/.claude-marketing/brands/{slug}/profile.json. If not found, list all available brands from ~/.claude-marketing/brands/ and suggest /digital-marketing-pro:brand-setup for new brands or /digital-marketing-pro:client-onboarding for new client setup
  3. Check credential profile exists: Run credential-manager.py --action get-profile --id {slug} to verify a credential profile exists for the target brand. If missing, explain how to create one with the required platform credentials and abort with setup instructions
  4. Validate credential profile: Run credential-manager.py --action validate-profile --id {slug} to check each platform's credentials — verify API keys are present and non-empty, OAuth tokens are not expired, and required environment variables are set for all MCP servers configured in .mcp.json
  5. Present validation summary: Display a platform-by-platform validation report — for each configured service:
    • Platform name and type (ad platform, analytics, CRM, social, email)
    • Credential status: configured / not configured / expired
    • Required env vars: set or missing (with specific variable names)
    • Token expiry date if applicable
    • Last successful connection timestamp if available
  6. Check for recent operations: Before switching, scan python "${CLAUDE_PLUGIN_ROOT}/scripts/execution-tracker.py" --brand {slug} --action get-history --limit 20 for recently logged executions and deliveries under the current profile that a context switch could affect. The tracker records completed runs (success/failure) — there is no live "in-progress" feed, so treat the most recent entries as potentially still settling and warn with specific operation details if any look active
  7. Confirm switch intent: If validation passed cleanly, proceed automatically. If warnings exist (missing non-critical credentials, expiring tokens within 7 days), present the warnings and ask for confirmation. If critical credentials are missing and force is not set, abort with specific guidance on what needs to be configured
  8. Execute credential switch: Run credential-manager.py --action switch-profile --id {slug} to activate the target brand's credential profile. This updates the active profile reference and loads the corresponding environment variables for all MCP servers
  9. Switch active brand: Update ~/.claude-marketing/brands/_active-brand.json to set the target brand as the active brand context — ensuring brand profile and credentials are aligned so all subsequent commands use the correct client
  10. Verify switch success: Re-read both _active-brand.json and _active-profile.json to confirm the switch completed successfully. If full validation was requested, run a quick connectivity test on critical platforms (Google Ads, Analytics, CRM) to confirm live access works
  11. Log the switch: Record the switch event with timestamp, previous brand, new brand, validation result, any warnings, and reason (if provided) in ~/.claude-marketing/credentials/switch-log.json for audit trail purposes
  12. Report new active context: Display the new active brand name, slug, industry, business model, configured platforms with their validation status, and any warnings for missing or expiring credentials. Suggest relevant next steps based on common post-switch workflows
Show full SKILL.md (256 more words)Show less

Output

A credential switch confirmation containing:

  • Previous context: Brand name, slug, and credential profile that was active before the switch — so the user can verify what they switched away from and return if needed
  • New active context: Brand name, slug, industry, business model, primary marketing channels, engagement type, and contract status now active
  • Platform validation report: Per-platform status table — platform name, configured (yes/no), env vars (set/missing with specific var names listed), token status (valid/expired/N/A with expiry date if applicable), and connectivity result (verified/not tested/failed with error detail)
  • Missing credential warnings: Any platforms configured in the brand profile but missing API keys or tokens, with specific instructions for adding them — which env var to set, where to obtain the credential, and whether the platform is critical or optional for current workflows
  • Expiring credential alerts: Any tokens or keys approaching expiration within 7 days, with renewal instructions, urgency level (informational/action-needed/critical), and impact if not renewed
  • Active operations check: Confirmation that no in-progress operations were disrupted, or detailed warnings listing any operations that may need attention after the switch
  • Switch log entry: Timestamp, previous brand, new brand, validation summary, warnings count, and reason — recorded for audit and troubleshooting purposes
  • Next steps: Confirmation message — "All operations will now use [brand_name]'s credentials. Configured platforms: [list]. Use /digital-marketing-pro:agency-dashboard to see this client's status, /digital-marketing-pro:client-report to generate a performance report, or /digital-marketing-pro:credential-switch again to return to the previous brand."

Agents Used

  • agency-operations — Credential profile management, platform validation logic, active operations safety check, switch execution, context alignment verification, audit logging, and post-switch recommendation engine

© indranilbanerjee, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/credential-switch of indranilbanerjee/digital-marketing-pro.

Open the folder on GitHubat commit 3343924

Used in 1 other repository

We found 1 copy of this SKILL.md (exact, near-identical or edited) in other folders, from 1 other GitHub owner. This page covers the copy in indranilbanerjee/digital-marketing-pro, which our catalogue first saw on October 7, 2026.

Compare with similar skills

Credential Switch next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Credential Switch compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Credential Switch this skillindranilbanerjee/digital-marketing-pro8591 repos~2.3kAutomated safety check: PassMIT
Ad CreativeLeoYeAI/openclaw-marketing-skills1k8 repos~3.4kAutomated safety check: PassCustom licence
Blog GoogleAgriciDaniel/claude-blog2.3k1 repos~3.3kAutomated safety check: NotesMIT
Ad Account Auditoraaron-he-zhu/aaron-marketing-skills2.9k2 repos~2.2kAutomated safety check: PassApache-2.0
Ad Creative Builderaaron-he-zhu/aaron-marketing-skills2.9k2 repos~2.2kAutomated safety check: PassApache-2.0
Ad Test Designeraaron-he-zhu/aaron-marketing-skills2.9k2 repos~2.8kAutomated safety check: PassApache-2.0

Similar skills

  • Ad Creative

    LeoYeAI/openclaw-marketing-skills

    When the user wants to generate, iterate, or scale ad creative — headlines, descriptions, primary text, or full ad variations — for any paid advertising platform.

    1k GitHub starsUsed in 8 repos~3.4k tokens
    Marketing & SEOAuto-check passed
  • Blog Google

    AgriciDaniel/claude-blog

    Google API integration for blog performance: PageSpeed Insights, CrUX Core Web Vitals with 25-week history, Search Console performance, URL Inspection, Indexing API, GA4 organic traffic, NLP entity…

    2.3k GitHub starsUsed in 1 repo~3.3k tokens
    Marketing & SEOAuto-check: notes
  • Ad Account Auditor

    aaron-he-zhu/aaron-marketing-skills

    A skill your agent uses when auditing a paid ad account for incremental contribution, wasted spend, or measurement integrity before scaling; runs a typed 20-item ROAS profile with verified vetoes…

    2.9k GitHub starsUsed in 2 repos~2.2k tokens
    Marketing & SEOAuto-check passed
  • Ad Creative Builder

    aaron-he-zhu/aaron-marketing-skills

    A skill your agent uses when the user asks to "write ad copy", "generate RSA headlines", or "build ad creative at volume"; produces ad units — RSA headlines/descriptions, hooks, and an angle matrix…

    2.9k GitHub starsUsed in 2 repos~2.2k tokens
    Marketing & SEOAuto-check passed
  • Ad Test Designer

    aaron-he-zhu/aaron-marketing-skills

    A skill your agent uses when the user asks to "design an A/B test", "set up a creative/landing test", "run an incrementality test", or "is this result statistically and practically material?"…

    2.9k GitHub starsUsed in 2 repos~2.8k tokens
    Marketing & SEOAuto-check passed
  • Paid Ads Audit

    AgriciDaniel/claude-ads

    Runs a source-grounded paid advertising audit across up to 12 ad platforms, with parallel platform workers, deterministic scoring and a versioned JSON bundle.

    9.8k GitHub stars~1.5k tokensUpdated yesterday
    Marketing & SEOAuto-check passed

More from indranilbanerjee/digital-marketing-pro

All 162 skills in this repo
  • Ab Test Plan

    indranilbanerjee/digital-marketing-pro

    Design a statistically rigorous A/B or multivariate test plan — If/Then/Because hypothesis, control and variant specs, required sample size per variant (absolute vs relative MDE via…

    859 GitHub starsUsed in 1 repo~2k tokens
    Auto-check passed
  • Aeo Audit

    indranilbanerjee/digital-marketing-pro

    Audit how a brand appears across the 6 canonical AI answer surfaces — ChatGPT, Perplexity, Google AI Mode, AI Overviews, Gemini, Copilot — probing 10-25 queries into a numbered output bundle with…

    859 GitHub starsUsed in 1 repo~2.6k tokens
    Auto-check passed
  • Agent Readiness Audit

    indranilbanerjee/digital-marketing-pro

    Audit whether AI agents and AI crawlers can actually use a site — robots.txt rules per AI crawler token (OpenAI, Anthropic and Perplexity bots, Google-Extended, Applebot-Extended)…

    859 GitHub starsUsed in 1 repo~3.9k tokens
    Auto-check passed
  • Backlink Gap

    indranilbanerjee/digital-marketing-pro

    Find referring domains that link to your competitors but not to you, ranked by an outreach-priority score (0.40 DR + 0.25 link-overlap + 0.20 traffic + 0.15 topical relevance) — outputs a four-gate…

    859 GitHub starsUsed in 1 repo~2.8k tokens
    Auto-check passed
  • C2pa Metadata

    indranilbanerjee/digital-marketing-pro

    Embed a C2PA provenance manifest into an AI-generated marketing asset (PNG, JPG, WebP, GIF, TIFF, MP4, MOV, WebM, MP3, WAV, PDF) via scripts/embed-c2pa.py — produces a signed copy of the file…

    859 GitHub starsUsed in 1 repo~2.5k tokens
    Auto-check passed
  • Campaign Audit

    indranilbanerjee/digital-marketing-pro

    Inventory and score everything currently running for a brand across paid search, paid social, email, organic, SEO, AEO/GEO, CRM, and analytics — produces a dated audit document with a 4-tier triage…

    859 GitHub starsUsed in 1 repo~4.1k tokens
    Auto-check: notes

Categories

Questions about Credential Switch

What does Credential Switch do?

Switch the active credential profile to a different client brand, validating each configured platform's API keys, env vars, and token expiry before anything runs — preventing cross-client data leaks…. Credential Switch is an agent skill from indranilbanerjee/digital-marketing-pro. Switch the active credential profile to a different client brand, validating each configured platform's API keys, env vars, and token expiry before anything runs — preventing cross-client data leaks and misrouted ad spend.

When should I use Credential Switch?

Credential Switch fits situations like: /digital-marketing-pro:credential-switch; switch to the other clients account; activate Acmes API keys; are the right credentials active.

How do I install Credential Switch in Claude Code?

Run `npx skills add indranilbanerjee/digital-marketing-pro --skill credential-switch -a claude-code`. Or copy the skill folder (skills/credential-switch in indranilbanerjee/digital-marketing-pro) into .claude/skills/credential-switch in your project. Claude Code loads it when a task matches its description.

How do I install Credential Switch in Codex?

Run `npx skills add indranilbanerjee/digital-marketing-pro --skill credential-switch -a codex`. Or copy the skill folder (skills/credential-switch in indranilbanerjee/digital-marketing-pro) into .agents/skills/credential-switch in your project. Codex loads it when a task matches its description.

Can I use Credential Switch in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add indranilbanerjee/digital-marketing-pro --skill credential-switch -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/credential-switch, .gemini/skills/credential-switch, .github/skills/credential-switch and .opencode/skills/credential-switch in your project.

What does Credential Switch need to run?

Going by SKILL.md and its folder, Credential Switch needs the command-line tools its instructions call (python). Our summary lists: Python 3.

Does Credential Switch access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Credential Switch safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Credential Switch use?

Credential Switch is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Credential Switch use?

About 2.3k tokens (SKILL.md is roughly 9.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Credential Switch?

Skills that share tags, products or a category with Credential Switch: Ad Creative (LeoYeAI/openclaw-marketing-skills, 1k stars), Blog Google (AgriciDaniel/claude-blog, 2.3k stars), Ad Account Auditor (aaron-he-zhu/aaron-marketing-skills, 2.9k stars) and Ad Creative Builder (aaron-he-zhu/aaron-marketing-skills, 2.9k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Credential Switch?

indranilbanerjee (a GitHub user) maintains it in indranilbanerjee/digital-marketing-pro, which has 859 GitHub stars. The repository holds 162 skills in this directory. The repository was last updated on October 4, 2026.

Source: indranilbanerjee/digital-marketing-pro on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.