Agent skill

Provider Key Manager

by aAAaqwq in aAAaqwq/AGI-Super-Team

Provider key manager — rotate and sync API keys across multi-agent workspaces

MITAuto-check passedAgent Workflows

Install Provider Key Manager

skills CLI
$ npx skills add aAAaqwq/AGI-Super-Team --skill provider-key-manager -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install aAAaqwq/AGI-Super-Team provider-key-manager --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/aAAaqwq/AGI-Super-Team.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/provider-key-manager .claude/skills/provider-key-manager && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
provider-key-manager
GitHub stars
105
Used in
1 other repo
Token cost
~892 tokens
SKILL.md length
243 words
Files
2 (incl. scripts)
Skills in repo
152
Repo updated
First seen
Licence
MIT

At a glance

Provider key manager — rotate and sync API keys across multi-agent workspaces

  • Works in 5 steps: 审计当前配置 → 迁移到环境变量模式 → 更换 API Key → …
  • Agent Workflows work in your project
  • SKILL.md covers 痛点, 方案:环境变量统一引用, 触发词 and 命令, plus 3 more sections
  • Runs Python scripts from its folder; calls python3; reaches open.bigmodel.cn; needs ZAI_API_KEY and XAI_API_KEY

What it does

Provider Key Manager is an agent skill from aAAaqwq/AGI-Super-Team. Provider key manager — rotate and sync API keys across multi-agent workspaces

Its SKILL.md is about 890 tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files, including scripts (for example `scripts/manager.py`).

It sits in Agent Workflows. It works with MiniMax. The repository describes itself as: An installable, cross-framework AI organization: C-suite agents, expert subagents, curated skills, independent review, and one-command setup across 18 AI client/runtime adapters. The licence is MIT.

When your agent uses it

  • Agent Workflows work in your project

Example prompts

  • “/provider-key-manager”

Requirements

  • Python 3
  • A credential in ZAI_API_KEY
  • A credential in XINGJIABIAPI_KEY

Workflow steps

5 steps, taken from the step headings in SKILL.md.

  1. 审计当前配置
  2. 迁移到环境变量模式
  3. 更换 API Key
  4. 测试 Key 可用性
  5. 查看 Provider 总览

What it can do on your machine

Read from SKILL.md and the folder at commit 331ecd3. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 1 file in scripts/ (Python), which the agent can run.

    Shell commands in SKILL.md call:

    • python3

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • open.bigmodel.cn

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • ZAI_API_KEY
    • XAI_API_KEY
    • XINGJIABIAPI_KEY
    • XINGSUANCODE_KEY
    • MOONSHOT_API_KEY
    • MINIMAX_API_KEY
    • XINYUAN_API_KEY
    • BOLUOBAO_API_KEY
    • GOOGLE_API_KEY

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Provider Key Manager loads about 892 tokens when it runs. Until then it costs about 25 tokens; SKILL.md has 243 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~25
When it runs · the whole SKILL.md, loaded when a task matches
~892

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from aAAaqwq/AGI-Super-Team at commit 331ecd3, republished under its MIT licence (© aAAaqwq). 243 words, ~892 tokens.

Download SKILL.mdSave it as .claude/skills/provider-key-manager/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
provider-key-manager
description
Provider key manager — rotate and sync API keys across multi-agent workspaces

Provider Key Manager

一条命令更换供应商 API Key,全员生效,零遗漏。

痛点

OpenClaw 多 agent 架构下,每个 agent 都有独立的 models.json,更换一个 provider key 需要:

  1. 修改 openclaw.json 全局配置
  2. 修改 13+ 个 agent 的 models.json
  3. 更新 pass 存储
  4. 重启 Gateway
  5. 逐个验证

一个 key 要改 15+ 处,漏改一个就报错。

方案:环境变量统一引用

OpenClaw 原生支持 ${ENV_VAR} 语法引用环境变量:

json
// openclaw.json
{
  "env": {
    "vars": {
      "ZAI_API_KEY": "actual-key-value-here"
    }
  },
  "models": {
    "providers": {
      "zai": {
        "apiKey": "${ZAI_API_KEY}",  // ← 引用环境变量,不硬编码
        "baseUrl": "https://open.bigmodel.cn/api/coding/paas/v4"
      }
    }
  }
}

核心原则:

  • API Key 只存在 env.vars 中(单一真相源)
  • 所有 provider 的 apiKey 用 "${ENV_VAR}" 引用
  • 各 agent 的 models.json 删除 apiKey 字段,继承全局 provider
  • 换 key = 改一个 env var + 重启,全员自动生效

触发词

换key, 更换key, provider key, API key 更换, 模型key, key管理, 供应商密钥

命令

1. 审计当前配置
bash
python3 ~/clawd/skills/provider-key-manager/scripts/manager.py audit

扫描所有 agent 的 models.json,报告:

  • ✅ 使用 ${ENV_VAR} 引用的 provider
  • ❌ 硬编码 apiKey 的 provider
  • ⚠️ key 值不一致的 agent
2. 迁移到环境变量模式
bash
python3 ~/clawd/skills/provider-key-manager/scripts/manager.py migrate [--provider zai] [--dry-run]

自动执行:

  1. 将 openclaw.json 中的硬编码 key 移入 env.vars
  2. 替换 provider apiKey 为 "${ENV_VAR}"
  3. 从各 agent models.json 中删除 apiKey 字段(继承全局)
  4. 更新 pass 存储
  5. 生成迁移报告
3. 更换 API Key
bash
python3 ~/clawd/skills/provider-key-manager/scripts/manager.py update <provider> <new-key> [--base-url <url>]

一条命令完成:

  1. 更新 env.vars 中的 key
  2. 如有 agent 仍硬编码,同步更新
  3. 更新 pass 存储
  4. 测试 key 可用性
  5. 输出重启命令
4. 测试 Key 可用性
bash
python3 ~/clawd/skills/provider-key-manager/scripts/manager.py test <provider>

对指定 provider 发送最小请求,验证 key 有效。

5. 查看 Provider 总览
bash
python3 ~/clawd/skills/provider-key-manager/scripts/manager.py status

显示所有 provider 的 key 来源、baseUrl、模型列表。

Provider ↔ 环境变量映射

Provider环境变量pass 路径
zaiZAI_API_KEYapi/zai
xingjiabiapiXINGJIABIAPI_KEYapi/xingjiabiapi
xaiXAI_API_KEYapi/xai
xingsuancodeXINGSUANCODE_KEYapi/xingsuancode
moonshotMOONSHOT_API_KEYapi/kimi
minimaxMINIMAX_API_KEYapi/minimax
xinyuanXINYUAN_API_KEYapi/xinyuan
boluobaoBOLUOBAO_API_KEYapi/boluobao
googleGOOGLE_API_KEYapi/google-ai-studio

架构图

┌─────────────────────────────────┐
│     openclaw.json               │
│  ┌───────────────────────┐      │
│  │ env.vars              │      │
│  │  ZAI_API_KEY: "xxx"   │ ← 单一真相源 (Single Source of Truth)
│  │  XAI_API_KEY: "yyy"   │      │
│  └───────────┬───────────┘      │
│              │ ${ZAI_API_KEY}   │
│  ┌───────────▼───────────┐      │
│  │ models.providers.zai  │      │
│  │  apiKey: "${ZAI_API_KEY}"    │
│  │  baseUrl: "https://..." │    │
│  └───────────────────────┘      │
└─────────────────────────────────┘
              │ 继承
    ┌─────────┼─────────┐
    ▼         ▼         ▼
 agent/     agent/    agent/
 main/      ops/     code/ ...
 models.json models.json
 (无 apiKey,继承全局)

注意事项

  1. env.vars 中的 key 是明文 — 但 openclaw.json 已在 .gitignore,不会被 commit
  2. per-agent models.json 仍需保留 provider 结构 — 只是删除 apiKey 字段
  3. 迁移后换 key 流程:manager.py update zai <new-key> → Gateway 重启 → 完成
  4. 回退方案:迁移前自动备份所有 models.json 到 /tmp/provider-key-backup/

© aAAaqwq, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file (scripts) in skills/provider-key-manager of aAAaqwq/AGI-Super-Team.

  • SKILL.md
  • scripts/manager.py

Open the folder on GitHubat commit 331ecd3

Used in 1 other repository

We found 1 copy of this SKILL.md (exact, near-identical or edited) in other folders, from 1 other GitHub owner. This page covers the copy in aAAaqwq/AGI-Super-Team, which our catalogue first saw on October 7, 2026.

Compare with similar skills

Provider Key Manager next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Provider Key Manager compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Provider Key Manager this skillaAAaqwq/AGI-Super-Team1051 repos~892Automated safety check: PassMIT
Short Drama Directorlixiaoxiao9888-create/manju-laoli-skill1.1k—~6.4kAutomated safety check: PassMIT
Subagentethanhq/cc-fleet215—~4.9kAutomated safety check: PassApache-2.0
Mnemonmnemon-dev/mnemon611—~776Automated safety check: PassApache-2.0
Clawhuboujingzhou/openmozi188—~291Automated safety check: PassApache-2.0
Subagentethanhq/cc-fleet215—~4.3kAutomated safety check: PassApache-2.0

Similar skills

  • Short Drama Director

    lixiaoxiao9888-create/manju-laoli-skill

    【漫剧老李AIGC 全流程Skill · V6.9.8 轻量版 Multi-Agent】抖音与红果爆款短剧/漫剧工业化编剧与视听导演超级系统。全面支持 OpenClaw、WorkBuddy、豆包智能体/扣子(Coze)等多Agent平台,深度适配 Seedance 2.5/2.0(强制二选一,即梦为次选/历史兼容)+ MiniMax H3 格式支线(七段式→H3…

    1.1k GitHub stars~6.4k tokensUpdated 18 days ago
    Agent WorkflowsAuto-check passed
  • Subagent

    ethanhq/cc-fleet

    Fan out a one-shot or flat parallel batch of cc-fleet PROVIDER subagents (headless cc-fleet subagent) that return a result — DeepSeek / GLM / Kimi / Qwen / MiniMax, or a Codex/Claude subscription.

    215 GitHub stars~4.9k tokensUpdated 9 days ago
    Agent WorkflowsAuto-check passed
  • Mnemon

    mnemon-dev/mnemon

    Persistent memory for MiniMax Code. An agent skill from mnemon-dev/mnemon.

    611 GitHub stars~776 tokensUpdated 5 days ago
    Agent WorkflowsAuto-check passed
  • Clawhub

    oujingzhou/openmozi

    Search, install and manage skills from ClawdHub. An agent skill from oujingzhou/openmozi.

    188 GitHub stars~291 tokensUpdated 4 mo ago
    Agent WorkflowsAuto-check passed
  • Subagent

    ethanhq/cc-fleet

    Run a one-shot or flat parallel batch of provider LLM subagents (headless cc-fleet subagent) that return a result.

    215 GitHub stars~4.3k tokensUpdated 9 days ago
    Agent WorkflowsAuto-check passed
  • MiniMax Code Delegation

    CherryHQ/cherry-studio

    Sends a bounded task to MiniMax Code with mcode exec, passing the smart permission mode for analysis and never the full one.

    52k GitHub starsUsed in 1 repo~357 tokens
    Agent WorkflowsAuto-check passed

More from aAAaqwq/AGI-Super-Team

All 152 skills in this repo
  • Content Creator

    aAAaqwq/AGI-Super-Team

    Create SEO-optimized marketing content with consistent brand voice.

    105 GitHub starsUsed in 3 repos~1.9k tokens
    Auto-check passed
  • Financial Calculator

    aAAaqwq/AGI-Super-Team

    Advanced financial calculator with future value tables, present value, discount calculations, markup pricing, and compound interest.

    105 GitHub starsUsed in 1 repo~1.5k tokens
    Auto-check passed
  • Frontend Design Ultimate

    aAAaqwq/AGI-Super-Team

    Create distinctive, production-grade static sites with React, Tailwind CSS, and shadcn/ui — no mockups needed.

    105 GitHub starsUsed in 2 repos~2.7k tokens
    Auto-check passed
  • Sysadmin Toolbox

    aAAaqwq/AGI-Super-Team

    Tool discovery and shell one-liner reference for sysadmin, DevOps, and security tasks.

    105 GitHub starsUsed in 2 repos~775 tokens
    Auto-check passed
  • Zsxq Smart Publish

    aAAaqwq/AGI-Super-Team

    Publish and manage content on 知识星球 (zsxq.com). An agent skill from aAAaqwq/AGI-Super-Team.

    105 GitHub stars~1.5k tokensUpdated 11 days ago
    Auto-check passed
  • Content Extract

    aAAaqwq/AGI-Super-Team

    Robust URL-to-Markdown extraction for OpenClaw workflows. An agent skill from aAAaqwq/AGI-Super-Team.

    105 GitHub starsUsed in 1 repo~650 tokens
    Auto-check passed

Works with

Categories

Questions about Provider Key Manager

What does Provider Key Manager do?

Provider key manager — rotate and sync API keys across multi-agent workspaces. Provider Key Manager is an agent skill from aAAaqwq/AGI-Super-Team.

When should I use Provider Key Manager?

Provider Key Manager fits situations like: agent Workflows work in your project.

How do I install Provider Key Manager in Claude Code?

Run `npx skills add aAAaqwq/AGI-Super-Team --skill provider-key-manager -a claude-code`. Or copy the skill folder (skills/provider-key-manager in aAAaqwq/AGI-Super-Team) into .claude/skills/provider-key-manager in your project. Claude Code loads it when a task matches its description.

How do I install Provider Key Manager in Codex?

Run `npx skills add aAAaqwq/AGI-Super-Team --skill provider-key-manager -a codex`. Or copy the skill folder (skills/provider-key-manager in aAAaqwq/AGI-Super-Team) into .agents/skills/provider-key-manager in your project. Codex loads it when a task matches its description.

Can I use Provider Key Manager in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add aAAaqwq/AGI-Super-Team --skill provider-key-manager -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/provider-key-manager, .gemini/skills/provider-key-manager, .github/skills/provider-key-manager and .opencode/skills/provider-key-manager in your project.

What does Provider Key Manager need to run?

Going by SKILL.md and its folder, Provider Key Manager needs Python for the scripts in its folder, the command-line tools its instructions call (python3) and credentials named ZAI_API_KEY, XAI_API_KEY, XINGJIABIAPI_KEY and XINGSUANCODE_KEY. Our summary lists: Python 3; A credential in ZAI_API_KEY; A credential in XINGJIABIAPI_KEY.

Does Provider Key Manager access the network?

SKILL.md names 1 domain. In commands or code: open.bigmodel.cn; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Provider Key Manager safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Provider Key Manager use?

Provider Key Manager is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Provider Key Manager use?

About 892 tokens (SKILL.md is roughly 3.6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Provider Key Manager?

Skills that share tags, products or a category with Provider Key Manager: Short Drama Director (lixiaoxiao9888-create/manju-laoli-skill, 1.1k stars), Subagent (ethanhq/cc-fleet, 215 stars), Mnemon (mnemon-dev/mnemon, 611 stars) and Clawhub (oujingzhou/openmozi, 188 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Provider Key Manager?

aAAaqwq (a GitHub user) maintains it in aAAaqwq/AGI-Super-Team, which has 105 GitHub stars. The repository holds 152 skills in this directory. The repository was last updated on September 27, 2026.

Source: aAAaqwq/AGI-Super-Team on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.