infisical-readerDirect REST API reader for Infisical secrets. Lightweight, no middleware. Use when the agent needs to fetch API keys or credentials from Infisical.
Install via ClawdBot CLI:
clawdbot install achikochikorogaru/infisical-readerGrade Limited — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Sends data to undocumented external endpoint (potential exfiltration)
POST → https://app.infisical.com/api/v1/auth/universal-auth/loginCalls external URL not in known-safe list
https://infisical.comAI Analysis
The skill's external API calls to Infisical are consistent with its stated purpose of reading secrets, and it does not appear to exfiltrate data to unauthorized servers. However, it requires storing high-value credentials in a local .env file and uses a direct REST API, which could be a target for credential harvesting if the environment is compromised. No hidden instructions or obfuscation were found.
Audited Aug 23, 2026 · audit v1.0
Usage Guide
Loading usage data… refresh in a few seconds.
Scored Aug 23, 2026
Save durable memory without secrets
Mask sensitive company-project document content before analysis
Complete guide for using pass, the standard Unix password manager. Use this skill whenever the user asks about pass, password-store, managing passwords from...
On-screen agent alert: topmost message card + pulsating screen borders via Nameplate. Use before password-manager auth prompts or whenever blocked on the human.
1Password Connect API skill. Use when working with 1Password Connect for activity, vaults, heartbeat. Covers 15 endpoints.
Use this skill when an agent needs to scan a Git repository for secrets, credentials, or machine-specific file paths, then sanitize safe findings in place or...