Topic · DevOps & Cloud
Best secrets management skills, page 3
Secrets management skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 97 | Installation and configuration skill for Agent Brain document search system. | SpillwaveSolutions/ | 119 | — | ~7k | Automated safety check: Notes | MIT | 18 days ago |
| 98 | Ask the user for API keys, tokens, or other credentials from a Cloudroom cloud thread and write them to a dotenv file without exposing them in chat. | davidondrej/ | 272 | — | ~337 | Automated safety check: Notes | Apache-2.0 | yesterday |
| 99 | Rule pack for the environment variable reference — en/self-host/deploy/configuration/environments.mdx. | langgenius/ | 178 | — | ~2.5k | Automated safety check: Pass | CC-BY-4.0 | today |
| 100 | Connect to the running Redmine instance and log in via the Playwright MCP browser, using REDMINEPLAYRIGHTURL/REDMINEPLAYRIGHTUSER/REDMINEPLAYRIGHTPASSWORD environment variables. | haru/ | 106 | — | ~796 | Automated safety check: Pass | MIT | today |
| 101 | 101.Secleak Check Run or install repo security leak checks with BetterLeaks and Trivy. | instructa/ | 139 | — | ~557 | Automated safety check: Pass | No licence | 10 days ago |
| 102 | Lets the agent list and read the secrets a user has configured, such as API keys and tokens, through two tai tools instead of hardcoding credentials into code or commands. | YaoApp/ | 8.1k | — | ~415 | Automated safety check: Pass | Unknown | 3 days ago |
| 103 | 103.Dotenvx Secrets How this repo manages API secrets and the four local-run environments (local/dev/staging/prod). | kortix-ai/ | 20k | — | ~4.2k | Automated safety check: Notes | Unknown | today |
| 104 | 104.Add Dial Tool Installs the `dial` CLI and a credential in NanoClaw agent containers so chosen agents can send SMS, place AI voice calls and receive verification codes. | nanocoai/ | 31k | — | ~4.4k | Automated safety check: Pass | MIT | 2 days ago |
| 105 | 105.Repo Audit Deep analysis of Git history: identify frequently changed hotspot files, analyze code ownership by contributor, and scan for leaked secrets. | zebbern/ | 4.7k | — | ~831 | Automated safety check: Pass | MIT | today |
| 106 | Turns a leaked key, token or password into one tracked rotation task the moment it's spotted, instead of a reminder repeated every session. | avelikiy/ | 103 | — | ~884 | Automated safety check: Notes | MIT | yesterday |
| 107 | Guidance for securing Azure App Service web apps and APIs — managed identity, Easy Auth with Microsoft Entra ID, network isolation via private endpoints + VNet integration, HTTPS / TLS hardening… | vinayaklatthe/ | 175 | — | ~1.9k | Automated safety check: Pass | MIT | 3 mo ago |
| 108 | Runbook for deploying or redeploying the CodFlow Astro storefront to Vercel, with required environment variables, CLI or Git methods and checks afterwards. | bighadj22/ | 346 | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 109 | Guidance for writing idempotent Ansible playbooks, roles and inventories, with patterns for handlers, rolling deployments, Vault secrets and error handling. | RightNow-AI/ | 18k | — | ~730 | Automated safety check: Pass | Apache-2.0 | 3 mo ago |
| 110 | Security-focused source code review and SAST. An agent skill from transilienceai/communitytools. | transilienceai/ | 562 | — | ~1.2k | Automated safety check: Notes | MIT | 2 mo ago |
| 111 | Audits code and infrastructure for vulnerabilities and produces a severity-rated report with locations and remediation, using SAST, dependency and secrets scans plus manual review. | Jeffallan/ | 12k | — | ~1.3k | Automated safety check: Pass | MIT | 5 days ago |
| 112 | A skill your agent uses when authoring, planning, or running a declarative sbxenv.yaml file for Docker Sandboxes (sbx env create/run/plan/exec/rm), even if the user just says they want to "check in… | docker/ | 539 | — | ~4k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 113 | 113.Chorus CLI How to install, configure, and use the chorus CLI — install it, manage agents with chorus agents (add/remove/list), the connection environment variables, and MCP operations via chorus mcp. | Chorus-AIDLC/ | 1.2k | — | ~1.2k | Automated safety check: Notes | AGPL-3.0 | yesterday |
| 114 | Installs Codex as an agent provider for NanoClaw groups, with streaming, MCP tools, server-side history and vault-only credentials, next to or instead of Claude. | nanocoai/ | 31k | — | ~2.3k | Automated safety check: Notes | MIT | 2 days ago |
| 115 | 115.Env Setup Create or update Novu environment variables in the user's project safely (never expose the secret key to the client). | novuhq/ | 40k | — | ~464 | Automated safety check: Notes | Unknown | today |
| 116 | 116.Pre Commit Audit Deliver a fast pre-commit safety scan: file size, anonymity (author / affiliation strings in tex/bib), hardcoded secrets, and invisible-Unicode carriers. | flonat/ | 145 | — | ~2.8k | Automated safety check: Notes | MIT | 9 days ago |
| 117 | Azure Key Vault Secrets Java SDK for secret management. An agent skill from microsoft/skills. | microsoft/ | 3.1k | 5 repos | ~3.1k | Automated safety check: Pass | MIT | 2 days ago |
| 118 | How to monitor and fix security issues in Massing — CodeQL alerts, dependency audits, secret scanning, and ReDoS/XXE fixes. | ibuilder/ | 122 | — | ~1.7k | Automated safety check: Pass | MIT | 6 days ago |
| 119 | 119.Chorus CLI How to install, configure, and use the chorus CLI — install it, manage agents with chorus agents (add/remove/list), the connection environment variables, and MCP operations via chorus mcp. | Chorus-AIDLC/ | 1.2k | — | ~915 | Automated safety check: Pass | AGPL-3.0 | yesterday |
| 120 | Ghost Security - Secrets and credentials scanner. An agent skill from ghostsecurity/skills. | ghostsecurity/ | 408 | — | ~1.2k | Automated safety check: Notes | Apache-2.0 | 10 days ago |
| 121 | 121.Pinact Read pinact's documentation with pinact docs list and pinact docs show <name before answering. | saleor/ | 162 | — | ~685 | Automated safety check: Pass | Unknown | yesterday |
| 122 | Deploys a production n8n instance to a fresh Linux server over SSH with Docker Compose and Caddy HTTPS, in single or queue mode, and covers updates, backups and hardening. | czlonkowski/ | 6.4k | — | ~3.5k | Automated safety check: Notes | MIT | 22 days ago |
| 123 | 123.Quarkus Security Quarkus security implementation patterns: JWT and OIDC authentication, @RolesAllowed RBAC and SecurityIdentity checks, Bean Validation and custom validators, parameterized Panache queries, BCrypt… | affaan-m/ | 275k | 1 repo | ~3.1k | Automated safety check: Pass | MIT | 3 days ago |
| 124 | 124.Azure Keyvault Manage secrets and certificates in Azure Key Vault. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 2 repos | ~3.2k | Automated safety check: Pass | MIT | yesterday |
| 125 | Build applications using Azure App Configuration SDK for JavaScript (@azure/app-configuration). | microsoft/ | 3.1k | 5 repos | ~2.2k | Automated safety check: Pass | MIT | 2 days ago |
| 126 | Azure Key Vault Keys SDK for .NET. An agent skill from microsoft/skills. | microsoft/ | 3.1k | 5 repos | ~3.1k | Automated safety check: Pass | MIT | 2 days ago |
| 127 | 127.Pi Agent Builds with and operates Pi, the minimal terminal coding harness. | K-Dense-AI/ | 48k | 1 repo | ~2.1k | Automated safety check: Pass | MIT | 3 days ago |
| 128 | Emulates any Aspire CLI build identity (channel, version, commit, package source) from a locally built CLI using ASPIRECLI environment variables and the install sidecar, so a reported bug can be… | microsoft/ | 6.3k | — | ~6.4k | Automated safety check: Pass | MIT | today |
| 129 | A skill your agent uses when the user asks to set up secret management infrastructure, integrate HashiCorp Vault, configure cloud secret stores (AWS Secrets Manager, Azure Key Vault, GCP Secret… | alirezarezvani/ | 28k | 1 repo | ~3.6k | Automated safety check: Notes | MIT | 1 mo ago |
| 130 | Detect hardcoded secrets in code or configuration accessible to the target agent. | Tencent/ | 6.8k | — | ~849 | Automated safety check: Notes | Apache-2.0 | today |
| 131 | Working on RedAmon's supply-chain scanner (offline OSV + GuardDog + retire + trufflehog): the offline OSV database that the scan path does not bootstrap, the world-readable requirement for the… | samugit83/ | 3k | — | ~855 | Automated safety check: Pass | MIT | yesterday |
| 132 | Expert-level Windows batch file (.bat/.cmd) skill for writing, debugging, and maintaining CMD scripts. | github/ | 40k | 1 repo | ~4.3k | Automated safety check: Pass | MIT | today |
| 133 | 133.Static Security Static security review for Flutter mobile apps and Dart code: hardcoded secrets, insecure storage, unsafe network calls, leaky logs, vulnerable dependencies. | VeryGoodOpenSource/ | 169 | — | ~4.4k | Automated safety check: Notes | MIT | 2 days ago |
| 134 | Implements authentication, authorization, encryption, secrets management, and security hardening patterns. | CloudAI-X/ | 1.4k | — | ~3.6k | Automated safety check: Notes | MIT | 2 days ago |
| 135 | Detect hardcoded sensitive data (API keys, access tokens, private keys, passwords, etc.) in publicly accessible code — frontend JavaScript, mobile apps, client-side bundles, and HTML templates. | utkusen/ | 1.3k | — | ~6.5k | Automated safety check: Notes | MIT | 6 mo ago |
| 136 | Guide for using MSBuild Server to improve CLI build performance. | microsoft/ | 1k | 1 repo | ~678 | Automated safety check: Pass | MIT | today |
| 137 | Gives NanoClaw agents the ability to deploy web apps to Vercel by installing the Vercel CLI in agent containers and wiring up credential injection through OneCLI. | nanocoai/ | 31k | — | ~1.5k | Automated safety check: Warn | MIT | 2 days ago |
| 138 | 138.Vercel CLI Deploy apps to Vercel. An agent skill from nanocoai/nanoclaw. | nanocoai/ | 31k | — | ~1.4k | Automated safety check: Warn | MIT | 2 days ago |
| 139 | Guide for configuring and managing GitHub secret scanning, push protection, custom patterns, and secret alert remediation. | github/ | 40k | 1 repo | ~2.4k | Automated safety check: Pass | MIT | today |
| 140 | How to build and run GPU targets under Buck in fbcode. An agent skill from facebookexperimental/triton. | facebookexperimental/ | 201 | — | ~998 | Automated safety check: Pass | MIT | today |
| 141 | 141.Specx Settings Add runtime configuration to specx Python services with pydantic-settings. | maksimzayats/ | 202 | — | ~707 | Automated safety check: Notes | MIT | 2 mo ago |
| 142 | Security hardening and best practices for robotic systems, covering SROS2 DDS security, network segmentation, secrets management, secure boot, and the physical-cyber safety intersection. | arpitg1304/ | 368 | — | ~7.8k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 143 | 143.Azure Usage This skill should be used when user asks to "query Azure resources", "list storage accounts", "manage Key Vault secrets", "work with Cosmos DB", "check AKS clusters", "use Azure MCP", or interact… | fcakyon/ | 1.2k | 1 repo | ~461 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 144 | 144.Varlock Secure-by-default environment variable management for Claude Code sessions. | sickn33/ | 47k | 2 repos | ~2.6k | Automated safety check: Notes | MIT | yesterday |
Explore related skills
Category
More topics in DevOps & Cloud
- Deployment1,264
- CI/CD977
- Containers731
- Observability636
- Container orchestration542
- Infrastructure as code377
- Monitoring and alerting351
- Runbooks and postmortems324
- Incident response302
- Cloud networking225
- Backup and disaster recovery183
- Site reliability engineering152
- Cloud architecture118
- MLOps100
- Cloud cost optimization92
- GitOps89
- Linux administration70
- Platform engineering45
- Chaos engineering25