Keyclasp – Let agents use tokens without putting them in prompts
Keyclasp – Let agents use tokens without putting them in prompts
Hi HN, I kept running into the same problem: either I’d have the agent give me the command, run it myself with the credentials, and copy-paste the output back, or I’d let the agent run it and keep finding secrets in its output. I looked into alternatives and asked friends, but the only workable approach I found for my workflow was writing custom wrappers around CLIs to handle authentication. I got tired of the back-and-forth, rotating leaked tokens, and maintaining wrappers, so I built Keyclasp. I've been using it for two months now and I don't see how could do without. Keyclasp stores credentials in a local encrypted vault. The agent works with secret names and selects what a command needs: keyclasp run --project myapp --environment dev --env API_KEY -- npm test The child process receives the requested token through its environment. The agent can list available secret names, but cannot retrieve the values. I also include a skill that explains the workflow. You can optionally require operator authorization when passing secrets. Everything is local and open source. It's not bulletproof and the command still needs to be trusted: it receives the real credential and can write it to disk or send it over the network, but that's ok in most cases as many agents sandbox disk or network anyway. An output guard scans stdout and stderr for exact injected values of at least eight characters. If it detects one, it redacts the match, stops forwarding output, and attempts to terminate the process group. Shorter values, encoded values, and fragments are outside that protection. You can install it with: npm install -g keyclasp@beta It’s MIT licensed and began as a fork of https://keyblind.dev/ , created by Mohammed Aarif Shaikh. How are you handling credentials for local coding agents today? I’d be interested in approaches I missed and places where this workflow falls short.
Share cardActual performance
Launch Intel predictions
Analyze your own launch →Correct prediction on native model
Similar products
AgentCouch – let your agents chat with other agents
GitRails-Let agents call only the GitHub endpoints and params you allow
Let Agents Search Any App
Yello. Let your agents chat with other people's agents
We let agents use APIs to find out if they can actually...do things?
Let agents test your code in a real browser
Dn – plan collaboratively, let agents execute
macOS VMs to let you agents run wild
Share your expertise, and let our agents earn for you.
CryptoFinalFour – Tradable March Madness brackets as ERC-721 tokens