一键导入
encrypt-api-keys
This skill covers AES-256-GCM encryption for provider API keys. Trigger: Load this skill when handling crypto operations for API keys.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
This skill covers AES-256-GCM encryption for provider API keys. Trigger: Load this skill when handling crypto operations for API keys.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
Four quality gate checklists for frontend: baseline visual, accessibility, metadata/SEO, and motion performance. Post-implementation quality gates. Trigger: When reviewing UI changes, before merging frontend PRs, during sdd-verify.
Browser-based UI verification using Playwright. Page Object Model, selector best practices, visual regression, network interception, and MCP integration. Trigger: When writing E2E tests, verifying UI changes, or setting up Playwright.
Interactive tutorial-style lessons for custom skills. Invoke /powerup <skill> for a guided walkthrough with examples, exercises, and knowledge checks. Trigger: When user says "powerup", "tutorial", "teach me", or wants to learn a skill interactively.
Self-installing markdown recipes for skills. Each skill can include an INSTALL.md that an agent reads and executes to set up dependencies, MCP servers, or config. Trigger: When installing a skill with INSTALL.md, or creating skills with setup requirements.
This skill covers the implementation of authentication routes. Trigger: When setting up auth-related endpoints in the backend.
This skill covers the generation routes for starting, streaming, canceling, downloading, and previewing. Trigger: When generating content.
| name | encrypt-api-keys |
| description | This skill covers AES-256-GCM encryption for provider API keys. Trigger: Load this skill when handling crypto operations for API keys. |
| license | Apache-2.0 |
| metadata | {"author":"repoforge","version":"1.0","complexity":"medium","token_estimate":350,"dependencies":[],"related_skills":[],"load_priority":"high"} |
This skill covers AES-256-GCM encryption for provider API keys.
Trigger: Load this skill when handling crypto operations for API keys.
| Task | Pattern |
|---|---|
| Derive user key | derive_user_key |
| Encrypt API key | encrypt_key |
Generate a secure key for user-specific encryption using the derive_user_key function.
from apps.server.app.services.crypto import derive_user_key
user_key = derive_user_key(user_id="example_user")
Securely encrypt an API key using AES-256-GCM with the encrypt_key function.
from apps.server.app.services.crypto import encrypt_key
encrypted_key = encrypt_key(api_key="my_secret_api_key", user_key=user_key)
docker-compose run app python apps/server/app/main.py
Hardcoding API keys in the source code exposes them to security risks.
# BAD
api_key = "my_secret_api_key"