AgentStack
Browse Sign in
Browse Why AgentStack Sell Docs
Sign in
SKILL verified MIT Self-run

Authentication Dotnet Api Key

skill-hoangnh2412-ai-skills-api-key · by hoangnh2412

Đăng ký Jarvis API Key AddCoreApiKey trong callback AddJarvisAuthentication — mặc định ConfigApiKeyProvider đọc config, hoặc custom IApiKeyProvider cho DB. Dùng khi client gửi key qua header X-API-KEY.

No reviews yet
0 installs
0 views
view→install

Install

$ agentstack add skill-hoangnh2412-ai-skills-api-key

✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.

Security review

✓ Passed

No issues found. Passed automated security review. · v0.1.0 How review works →

  • Prompt-injection patterns
  • Secret / credential exfiltration
  • Dangerous shell & filesystem operations
  • Untrusted network calls
  • Known-malicious package signatures

What it can access

  • Network access No
  • Filesystem access No
  • Shell / process execution No
  • Environment & secrets No
  • Dynamic code execution No

From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.

View the full security report →

Verified badge

Passed review? Show it. Paste this badge into your README, it links to the public security report.

AgentStack Verified badge Links to your public security report.
[![AgentStack Verified](https://agentstack.voostack.com/badges/verified.svg)](https://agentstack.voostack.com/security/report/skill-hoangnh2412-ai-skills-api-key)

Reliability & compatibility

Security review passed
0 installs to date
no reviews yet
4d ago

Declared compatibility

Claude CodeClaude Desktop

Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.

Preview Execution monitoring

We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.

How agent discovery & health will work →
Are you the author of Authentication Dotnet Api Key? Claim this listing to set pricing, connect Stripe payouts, and keep 70% of every sale.
Sign up to claim

About

API Key

Package

Program.cs

Đăng ký trong callback AddJarvisAuthentication. Provider truyền qua generic — mặc định ConfigApiKeyProvider (đọc config):

using Jarvis.Authentication;          // AddJarvisAuthentication
using Jarvis.Authentication.ApiKey;   // AddCoreApiKey, ConfigApiKeyProvider

builder.Services.AddJarvisAuthentication(builder.Configuration, auth =>
{
    auth.AddCoreApiKey(builder.Configuration);
});

Scheme mặc định "Default" (JarvisAuthenticationSchemes.ApiKey) — trùng section Authentication:ApiKey:Default.

Custom provider (DB / Redis / vault)

auth.AddCoreApiKey(builder.Configuration);
  • Implement AspNetCore.Authentication.ApiKey.IApiKeyProvider (ProvideAsync(string key)).
  • Đăng ký Singleton (tự động qua AddCoreApiKey) — không cần AddScoped. Tra DB → IDbContextFactory / IServiceScopeFactory.
  • ConfigApiKeyProvider bắt buộc Key trong config; custom provider chỉ bắt buộc KeyName (cờ RequireConfigKey tự set theo type, tách theo từng realm).

Multi-realm

Một scheme, nhiều realm qua prefix realm:secret trong header; không prefix → realm Default.

X-API-KEY: my-secret                 → realm Default
X-API-KEY: Integration:partner-key   → realm Integration

appsettings.json

Mỗi realm là một section con — KeyName (tên header) + Key (secret):

{
  "Authentication": {
    "ApiKey": {
      "Default":     { "KeyName": "X-API-KEY", "Key": "" },
      "Integration": { "KeyName": "X-API-KEY", "Key": "" }
    }
  }
}

Key — env / secret store, không commit. (Không phải Keys: [].)

Swagger

[swashbuckle-dotnet/providers/api-key-security](../../../swashbuckle-dotnet/providers/api-key-security/SKILL.md).

Validate

  • Request thiếu/sai header → 401
  • Key hợp lệ (realm Default) → 200
  • Integration:secret khớp realm Integration → 200

Source & license

This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.

Install and usage instructions live in the source repository linked above.

Reviews

No reviews yet, be the first.

Versions

  • v0.1.0 Imported from the upstream source.