Credential Management Guide

Use when choosing, storing, injecting, rotating, revoking, or responding to exposure of machine-to-machine credentials and secrets: the tokens a service, workload, or CI job presents to another system. Triggers on API tokens, PATs, client secrets, keychains, secret managers, masked CI variables, workload identity federation, OIDC, `.env` secret handling, credential rotation, or leaked credentials, even when the user doesn't say 'credential management' and names only a provider-specific token.

xonovex 9aaa6aa 7 files · 17.5 KB Updated

File contents

xonovex/platform/tree/main/packages/skill/skill-credential-management/credential-management-guide commit 9aaa6aa73a

Frequently asked questions

npx skillmds@latest add xonovex/credential-management-guide