Topic · DevOps & Cloud
Best secrets management skills, page 2
Secrets management skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 49 | 49.Codex Guard Pre-submit hygiene check for AI-agent-authored pull requests. | Akimiya-z/ | 138 | — | ~564 | Automated safety check: Pass | MIT | 6 days ago |
| 50 | 50.Swamp Swamp CLI — create and run models, build and validate workflows, query and manage data, store and retrieve vault secrets, develop and publish extensions, initialize repos, run reports, file issues… | swamp-club/ | 644 | — | ~1.9k | Automated safety check: Pass | Unknown | today |
| 51 | Manages Git identity, HTTPS access tokens and SSH keys at the workspace level through three `tai tool` commands, each with a get, set, list, import or delete action. | YaoApp/ | 8.1k | — | ~712 | Automated safety check: Pass | Unknown | 3 days ago |
| 52 | Guide for configuring, deploying, and operating the MonsterMQ broker. | vogler75/ | 143 | — | ~2.2k | Automated safety check: Pass | GPL-3.0 | 2 days ago |
| 53 | Secure GitHub Actions workflows against supply-chain, privilege, and shell-injection risks. | vechain/ | 450 | — | ~1.2k | Automated safety check: Pass | MIT | 2 mo ago |
| 54 | 54.Lade Release Prepare a Lade release: update CHANGELOG.md and bump crate versions with cargo set-version. | zifeo/ | 133 | — | ~749 | Automated safety check: Pass | MPL-2.0 | today |
| 55 | A skill your agent uses when writing, editing, reviewing, or running functional (end-to-end) tests for the Astronomer airflow-chart repository. | astronomer/ | 297 | — | ~2.2k | Automated safety check: Pass | Unknown | yesterday |
| 56 | Diagnoses marchat client and server issues using -doctor, env configuration, and logs. | Cod-e-Codes/ | 137 | — | ~668 | Automated safety check: Notes | MIT | 5 days ago |
| 57 | Detects fail-open insecure defaults (hardcoded secrets, weak auth, permissive security) that allow apps to run insecurely in production. | waybarrios/ | 533 | 2 repos | ~1.3k | Automated safety check: Pass | MIT | 2 days ago |
| 58 | Helps when network-related commands (like curl, git, npm, pip, brew) are failing, timing out, or running slowly due to network issues. | didi/ | 3.9k | — | ~464 | Automated safety check: Pass | Apache-2.0 | today |
| 59 | Local Gitleaks scans for staged changes, push ranges, and full history in private repos, with redacted reports. | jamditis/ | 416 | — | ~1.8k | Automated safety check: Pass | MIT | 3 days ago |
| 60 | 60.Add Env Var Step-by-step checklist for adding a new NEXTPUBLIC environment variable. | blockscout/ | 307 | — | ~1.6k | Automated safety check: Notes | Unknown | yesterday |
| 61 | 61.CLI Command Design, implement, or review Composio CLI commands under ts/packages/cli using Effect, effect/unstable/cli, services, output conventions, configuration and environment variables, and local vendor… | ComposioHQ/ | 30k | — | ~187 | Automated safety check: Pass | MIT | today |
| 62 | 62.Deployment Deploy Memoria with Docker Compose or Kubernetes. An agent skill from matrixorigin/memoria. | matrixorigin/ | 608 | — | ~1.6k | Automated safety check: Notes | Apache-2.0 | today |
| 63 | Shows how to use Warp's REST API and command line to start Oz cloud agents, check their runs, schedule them, manage their environments and provide secrets. | warpdotdev/ | 65k | 1 repo | ~3.2k | Automated safety check: Pass | AGPL-3.0 | today |
| 64 | 64.Gaik Toolkit GAIK toolkit overview and reference. An agent skill from GAIK-project/gaik-toolkit. | GAIK-project/ | 100 | — | ~5.7k | Automated safety check: Pass | MIT | yesterday |
| 65 | Maintain @next/rspack-core and @next/rspack-binding packages. | vercel/ | 143k | — | ~2k | Automated safety check: Pass | MIT | today |
| 66 | 66.Pre Commit Run the mandatory pre-commit checks for the poku repository before staging a commit. | wellwelwel/ | 1.2k | — | ~728 | Automated safety check: Pass | MIT | 3 mo ago |
| 67 | Scans a repository's source for security vulnerabilities with the supercov CLI, pointing to the line of each finding and mapping it to CWE classes. | supercorp-ai/ | 150 | 1 repo | ~236 | Automated safety check: Pass | MIT | yesterday |
| 68 | 68.Git Hooks Central authority on git hook implementations, modern best practices, and tooling for .NET/C, JavaScript/TypeScript, Python, and polyglot repositories. | Prorise-cool/ | 305 | — | ~3.6k | Automated safety check: Notes | No licence | 22 days ago |
| 69 | Project configuration and rendering mode patterns for Rasengan.js. | rasengan-dev/ | 125 | — | ~1.1k | Automated safety check: Pass | MIT | yesterday |
| 70 | Handles npm registry tasks such as whoami checks, package name availability, name reservation and publishing, with credentials pulled from 1Password. | steipete/ | 7.3k | — | ~1.1k | Automated safety check: Pass | MIT | 3 days ago |
| 71 | V8-based lightweight edge functions on EdgeOne Makers. An agent skill from TencentEdgeOne/edgeone-makers-tools. | TencentEdgeOne/ | 1.9k | 1 repo | ~1.2k | Automated safety check: Pass | MIT | today |
| 72 | 72.Noodle Use Teach agents to create, organize, maintain, evaluate, import, convert, and automate noodle terminal REST client collections using supported CLI commands plus YAML and dotenv files. | wilfredinni/ | 363 | — | ~8.5k | Automated safety check: Notes | Apache-2.0 | today |
| 73 | Deploy an existing project to a website on Hostinger web hosting (Shared, Cloud or Agency plans) and keep it deployed: picks the right deploy for static sites, Node.js apps (Next.js, Nuxt, Express… | hostinger/ | 159 | — | ~2.7k | Automated safety check: Notes | MIT | yesterday |
| 74 | Connects the Jev decision model by storing a TypeSafe, OpenRouter, Venice or OpenCode Zen key with jev setup-key, so the key never passes through the agent. | kerpopule/ | 1k | — | ~1.4k | Automated safety check: Notes | MIT | yesterday |
| 75 | Configure LLM models and providers for Letta agents and servers. | letta-ai/ | 147 | — | ~1.3k | Automated safety check: Notes | MIT | 6 days ago |
| 76 | Shared HomeRail rules for AI agents operating the local-source release candidate: service roles, environment variables, secrets, provider boundaries, Docker callback networking, update expectations… | xiaotianfotos/ | 992 | — | ~1.5k | Automated safety check: Pass | MIT | 12 days ago |
| 77 | Security analysis for the Azure Functions Node.js worker. An agent skill from Azure/azure-functions-nodejs-worker. | Azure/ | 110 | — | ~2.4k | Automated safety check: Pass | MIT | today |
| 78 | 78.Env Manager Environment variable validation, synchronization, and management across local development, CI/CD, and deployment platforms | bobmatnyc/ | 155 | — | ~2k | Automated safety check: Notes | MIT | 1 mo ago |
| 79 | 79.Flow Context This project uses flow for automation. An agent skill from flowexec/flow. | flowexec/ | 137 | — | ~654 | Automated safety check: Pass | Apache-2.0 | 6 days ago |
| 80 | Publish a Python package to PyPI using uv with credentials loaded from a local .secrets file. | ML4ITS/ | 166 | — | ~178 | Automated safety check: Pass | MIT | 7 mo ago |
| 81 | Bilingual guide for the OFFLINEPACKINGBMR and OFFLINEPACKEDDATA environment variables that control LLaVA-OneVision2 training-side packing — what each gate does, why both must be enabled together… | EvolvingLMMs-Lab/ | 1.2k | — | ~3.9k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 82 | Reviews Claude configuration files for security, structure, and prompt engineering quality. | bitwarden/ | 154 | — | ~4.2k | Automated safety check: Pass | Unknown | today |
| 83 | Wire encrypted credentials to environment variables using the credential: convention. | growthxai/ | 440 | — | ~930 | Automated safety check: Notes | Apache-2.0 | today |
| 84 | 84.Arkenv Answer questions about ArkEnv and help implement environment variable validation. | yamcodes/ | 145 | — | ~2.5k | Automated safety check: Pass | MIT | today |
| 85 | Configuration patterns for .NET 10 applications. An agent skill from codewithmukesh/dotnet-claude-kit. | codewithmukesh/ | 751 | 1 repo | ~1.4k | Automated safety check: Pass | MIT | 2 mo ago |
| 86 | Rules for working behind Iron Proxy: connect external accounts without handling raw tokens, treat blocked requests as policy outcomes, and never claim a connection before it works. | nanocoai/ | 31k | 1 repo | ~598 | Automated safety check: Pass | MIT | 2 days ago |
| 87 | A skill your agent uses when working on Sake configuration — .sake.yml, environment variables, CLI options, ConfigManager, ConfigResolver, or adding new config options. | kattouf/ | 116 | — | ~687 | Automated safety check: Pass | MIT | 6 mo ago |
| 88 | Review AI API key leakage patterns and redaction strategies. | IgorWarzocha/ | 122 | — | ~793 | Automated safety check: Notes | No licence | 8 mo ago |
| 89 | When and how to reach for the companion detectors -- bandit (Python SAST) and trivy (deps + secrets + IaC misconfig) -- alongside the core semgrep/CodeQL/osv/trufflehog toolchain | deonmenezes/ | 505 | — | ~510 | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 90 | Secure secrets management practices for CI/CD pipelines using Vault, AWS Secrets Manager, and other tools. | davila7/ | 32k | 12 repos | ~2k | Automated safety check: Pass | MIT | today |
| 91 | Checklist for deprecating a NEXTPUBLIC environment variable — immediate removal, or a grace period before a later removal. | blockscout/ | 307 | — | ~2.6k | Automated safety check: Notes | Unknown | yesterday |
| 92 | Practical Docker and Docker Compose patterns for local development: stacks, override files, networking, volumes, container hardening and debugging. | affaan-m/ | 275k | 4 repos | ~2.1k | Automated safety check: Notes | MIT | 3 days ago |
| 93 | Guidance for designing secure APIs on Azure - authentication, authorization, gateway controls, input validation, rate limiting, secret management, and runtime threat detection - aligned to OWASP API… | vinayaklatthe/ | 175 | — | ~2.2k | Automated safety check: Pass | MIT | 3 mo ago |
| 94 | Loads a missing environment variable or API key from the team's Infisical workspace into the current shell, or runs a command with all project secrets injected. | Devin-AXIS/ | 6.8k | 2 repos | ~516 | Automated safety check: Pass | Unknown | today |
| 95 | Covers creating and managing KubeSphere DevOps credentials as typed Kubernetes Secrets that sync to Jenkins, including the API endpoints and a common pitfall. | kubesphere/ | 17k | — | ~4.2k | Automated safety check: Pass | Unknown | 2 mo ago |
| 96 | Bitwarden's canonical pattern for using a secret inside a GitHub Actions job: authenticate to Azure with the OIDC triad, pull the secret from an Azure Key Vault via the bitwarden/gh-actions… | bitwarden/ | 154 | — | ~4k | Automated safety check: Pass | Unknown | today |
Explore related skills
Category
More topics in DevOps & Cloud
- Deployment1,264
- CI/CD977
- Containers731
- Observability636
- Container orchestration542
- Infrastructure as code377
- Monitoring and alerting351
- Runbooks and postmortems324
- Incident response302
- Cloud networking225
- Backup and disaster recovery183
- Site reliability engineering152
- Cloud architecture118
- MLOps100
- Cloud cost optimization92
- GitOps89
- Linux administration70
- Platform engineering45
- Chaos engineering25