Topic · DevOps & Cloud
Best secrets management skills, page 4
Secrets management skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 145 | 145.Sast Bandit Python security vulnerability detection using Bandit SAST with CWE and OWASP mapping. | AgentSecOps/ | 220 | 1 repo | ~2.6k | Automated safety check: Pass | Unknown | 5 mo ago |
| 146 | 146.Mcloud Variables Execute mcloud variables commands to list, get, set, and delete environment variables for a Cloud environment. | medusajs/ | 227 | — | ~1.7k | Automated safety check: Notes | No licence | 3 days ago |
| 147 | AI-powered codebase security scanner that reasons about code like a security researcher — tracing data flows, understanding component interactions, and catching vulnerabilities that pattern-matching… | github/ | 40k | 1 repo | ~2.3k | Automated safety check: Notes | MIT | today |
| 148 | 148.Golang Security Security best practices and vulnerability prevention for Golang — injection (SQL, command, XSS), cryptography, path traversal, SSRF and HTTP security headers, cookies, secrets management, memory… | unxed/ | 241 | 2 repos | ~3.6k | Automated safety check: Pass | MIT | today |
| 149 | Deploy cloud-native deception across AWS, Azure, and GCP using decoy (honey) resources whose only purpose is to generate a high-fidelity alert the instant an attacker touches them: canary IAM access… | mukul975/ | 34k | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 150 | Configures GitHub Advanced Security (code scanning with CodeQL, secret scanning, dependency review, and Dependabot alerts) to perform automated static analysis and vulnerability detection across… | mukul975/ | 34k | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 151 | 151.Security Audit RLS validation, security audits, OWASP compliance, and vulnerability scanning. | bybren-llc/ | 421 | — | ~1.4k | Automated safety check: Pass | MIT | 2 mo ago |
| 152 | 152.Secret Scanner Detect exposed secrets, API keys, credentials, and tokens in code. | alirezarezvani/ | 777 | — | ~1.4k | Automated safety check: Warn | MIT | 3 mo ago |
| 153 | Guides Microsoft Entra ID app registration, OAuth 2.0 authentication, and MSAL integration. | microsoft/ | 255 | 2 repos | ~2.1k | Automated safety check: Pass | MIT | today |
| 154 | Audit a pull request diff for common security concerns (input validation, sanitization, authentication and authorization, secrets management, unsafe dependencies, and related risks) and fold… | warpdotdev/ | 313 | 1 repo | ~2k | Automated safety check: Notes | MIT | 21 days ago |
| 155 | 155.Secrets Request user-supplied credentials securely into a dotenv file without exposing their values to the agent. | get-bb/ | 4.2k | — | ~427 | Automated safety check: Notes | MIT | today |
| 156 | Detect compromised cloud credentials across AWS, Azure, and GCP by analyzing anomalous API activity, impossible-travel patterns, and credential-stuffing indicators using GuardDuty, Microsoft… | mukul975/ | 34k | — | ~3.9k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 157 | Enable Microsoft Defender for Cloud (CSPM + CWPP) across VMs, containers, SQL, storage, and Key Vault, using Azure Policy for evaluation, Log Analytics for telemetry, Azure Arc for hybrid coverage… | mukul975/ | 34k | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 158 | Integrates SAST, DAST, and SCA into CI/CD pipelines using Semgrep for SAST, Trivy for SCA and container scanning, OWASP ZAP for DAST, and Gitleaks for secrets detection. | mukul975/ | 34k | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 159 | Configures HashiCorp Vault dynamic secrets engines for database credentials, AWS IAM keys, and PKI certificates, with automatic generation, lease management, and rotation to eliminate static secrets… | mukul975/ | 34k | — | ~5.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 160 | Deploy HashiCorp Vault for centralized secrets management, covering dynamic secret generation for databases and cloud providers, transit encryption, PKI certificate management, and Kubernetes… | mukul975/ | 34k | — | ~3.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 161 | Hardens serverless compute platforms (AWS Lambda, Azure Functions, Google Cloud Functions): least-privilege IAM roles, dependency vulnerability scanning, secrets management integration, input… | mukul975/ | 34k | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 162 | 162.Penguin Config Manage model API keys, default models and per-agent vault secrets with the penguin CLI. | Prism-Shadow/ | 2.5k | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 163 | Python configuration management via environment variables and typed settings. | wshobson/ | 40k | — | ~1.6k | Automated safety check: Notes | MIT | 3 days ago |
| 164 | 164.Search Search Google via Bright Data SERP API. An agent skill from davila7/claude-code-templates. | davila7/ | 32k | 1 repo | ~339 | Automated safety check: Pass | MIT | today |
| 165 | Manage environment-variable hygiene and secrets safety across local development and production. | alirezarezvani/ | 28k | — | ~2.7k | Automated safety check: Notes | MIT | 1 mo ago |
| 166 | 166.Managing Secrets Managing secrets (API keys, database credentials, certificates) with Vault, cloud providers, and Kubernetes. | ancoleman/ | 526 | — | ~2.9k | Automated safety check: Pass | MIT | 10 mo ago |
| 167 | 167.Config Configuration and environment variable conventions for the Playwright scaffold — env file layout (env/.env.), dotenv loading via playwright.config.ts and the ENVIRONMENT variable, config objects in… | idavidov13/ | 223 | — | ~2.8k | Automated safety check: Notes | MIT | 7 days ago |
| 168 | This skill should be used when users want to run any workload on Hugging Face Jobs infrastructure. | agent-skills-hub/ | 111 | 1 repo | ~7.7k | Automated safety check: Pass | MIT | 6 days ago |
| 169 | Manages Medusa Cloud resources through the Cloud CLI (mcloud). | medusajs/ | 227 | — | ~1.1k | Automated safety check: Pass | No licence | 3 days ago |
| 170 | This skill provides guidance for implementing security features that span across Better Auth, including rate limiting, CSRF protection, session security, trusted origins, secret management, OAuth… | viclafouch/ | 110 | — | ~4.2k | Automated safety check: Pass | No licence | 6 mo ago |
| 171 | Vercel environment variable expert guidance. An agent skill from vercel/vercel-plugin. | vercel/ | 301 | — | ~3k | Automated safety check: Notes | Unknown | yesterday |
| 172 | Suggests using Microsoft Testing Platform (MTP) hot reload to iterate fixes on failing tests without rebuilding. | microsoft/ | 1k | — | ~1.5k | Automated safety check: Pass | MIT | today |
| 173 | Establish a security baseline for a website or web app. An agent skill from rampstackco/claude-skills. | rampstackco/ | 940 | — | ~3k | Automated safety check: Pass | MIT | yesterday |
| 174 | 174.Conductor Working with Conductor (conductor.build), the parallel-agent app. | freekmurze/ | 1k | — | ~3.1k | Automated safety check: Notes | No licence | 3 days ago |
| 175 | This skill covers implementing Gitleaks for detecting and preventing hardcoded secrets in git repositories. | mukul975/ | 34k | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 176 | 176.Quarkus Security Quarkus Security best practices for authentication, authorization, JWT/OIDC, RBAC, input validation, CSRF, secrets management, and dependency security. | affaan-m/ | 275k | — | ~3.1k | Automated safety check: Pass | MIT | 3 days ago |
| 177 | 177.Security Nextjs Review Next.js security audit patterns for App Router and Server Actions. | IgorWarzocha/ | 122 | — | ~1.5k | Automated safety check: Notes | No licence | 8 mo ago |
| 178 | 178.Patentfig Generate patent-office-compliant figures via the PatentFig AI API — patent line art from text (PNG or SVG), vectorize drawings to SVG/DXF/vector PDF, AI-upscale images, and convert to filing-ready… | davila7/ | 32k | — | ~1.2k | Automated safety check: Pass | MIT | today |
| 179 | 179.Stage Launch Phase 2 of building a Claude Managed Agent — turn a validated build sheet into exact API payloads and a resumable BYOK curl launch script, then launch (environment → agent → session → kickoff) using… | alirezarezvani/ | 28k | — | ~964 | Automated safety check: Pass | MIT | 1 mo ago |
| 180 | 180.Azure A skill your agent uses when writing Python code that integrates with Azure Blob Storage, AI Search, Document Intelligence, or Key Vault — or when configuring Managed Identity auth, designing a… | kid-sid/ | 189 | — | ~3.7k | Automated safety check: Notes | MIT | 2 mo ago |
| 181 | Run Azure compliance and security audits with azqr plus Key Vault expiration checks. | microsoft/ | 255 | 2 repos | ~997 | Automated safety check: Pass | MIT | today |
| 182 | A skill your agent uses when handling API keys, passwords, tokens, private keys, or any sensitive credential. | aiming-lab/ | 3.5k | — | ~246 | Automated safety check: Notes | MIT | 4 mo ago |
| 183 | Integrate gitleaks and trufflehog into CI/CD pipelines to detect leaked secrets before deployment | mukul975/ | 34k | — | ~956 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 184 | Runs Trivy across every target type it supports - container images, filesystems, Git repositories, and Kubernetes clusters - for OS and dependency vulnerabilities, IaC misconfiguration, exposed… | mukul975/ | 34k | — | ~818 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 185 | 185.Leaked Secrets A skill your agent uses when reviewing client-side JavaScript, HTML source, or git history for exposed credentials, API keys, or tokens. | thedaviddias/ | 74k | — | ~596 | Automated safety check: Notes | MIT | 2 days ago |
| 186 | Analyze JS bundles and source maps for hardcoded secrets, API keys, JWTs, and internal endpoints | uphiago/ | 1.3k | — | ~2.6k | Automated safety check: Pass | MIT | 1 mo ago |
| 187 | Automatically discover security skills when working with authentication, authorization, input validation, security headers, vulnerability assessment, or secrets management. | rand/ | 181 | — | ~1.9k | Automated safety check: Pass | MIT | 7 mo ago |
| 188 | Audit MCP (Model Context Protocol) server configurations for security issues. | github/ | 40k | — | ~3.1k | Automated safety check: Pass | MIT | today |
| 189 | Deploy to production — CI/CD pipelines, environment config, deployment strategies. | ww-w-ai/ | 601 | — | ~2.7k | Automated safety check: Notes | Apache-2.0 | 11 days ago |
| 190 | 190.Secrets Audit Find leaked secrets in source code, Git history, build artifacts, and infrastructure — and audit the secrets-management posture preventing future leaks. | briiirussell/ | 413 | — | ~2.6k | Automated safety check: Notes | MIT | 4 mo ago |
| 191 | Troubleshoot Astronomer production deployments with Astro CLI. | astronomer/ | 451 | — | ~2.1k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 192 | 192.Env Manager Environment variable validation, security scanning, and management for Next.js, Vite, React, and Node.js applications | bobmatnyc/ | 155 | — | ~3.9k | Automated safety check: Notes | Unknown | 1 mo ago |
Explore related skills
Category
More topics in DevOps & Cloud
- Deployment1,264
- CI/CD977
- Containers731
- Observability636
- Container orchestration542
- Infrastructure as code377
- Monitoring and alerting351
- Runbooks and postmortems324
- Incident response302
- Cloud networking225
- Backup and disaster recovery183
- Site reliability engineering152
- Cloud architecture118
- MLOps100
- Cloud cost optimization92
- GitOps89
- Linux administration70
- Platform engineering45
- Chaos engineering25