Install
$ agentstack add skill-redhatproductsecurity-prodsec-skills-avoid-api-keys ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
Avoid API Keys in Production
Security Recommendation
API keys SHOULD NOT be used in production environments. Short-lived, scoped bearer tokens issued by an identity provider are preferable.
Why API Keys Are Problematic
| Issue | Impact | |---|---| | Long-lived | Extended exposure window if compromised | | Difficult to rotate | Rotation requires coordination across all consumers | | Lack fine-grained scoping | Cannot limit permissions per request or context | | No sender binding | Any holder of the key can use it from anywhere | | No standard revocation | No instant revocation mechanism across distributed systems | | Poor audit trail | API keys don't carry identity claims about the caller |
Preferred Alternative
Use short-lived, scoped bearer tokens from an OIDC Identity Provider:
| Property | API Key | IdP-Issued Token | |---|---|---| | Lifetime | Long-lived (months/years) | Short-lived (≤15 minutes) | | Scoping | Broad or none | Per-request scopes | | Revocation | Manual, slow | Instant via IdP + local blacklist | | Identity | Opaque | Rich claims (sub, iss, aud, scope) | | Rotation | Manual | Automatic via refresh tokens | | Sender binding | None | DPoP or mTLS certificate binding |
Migration Path
For systems currently using API keys:
- Deploy an API gateway that accepts API keys from legacy clients
- Gateway exchanges API keys for short-lived IdP tokens
- Backend services only accept IdP tokens (never raw API keys)
- Set deprecation timeline for API key consumers
- Migrate consumers to OIDC flows
- Retire API key support
Credential Storage
Credentials (API keys, tokens, secrets) MUST NEVER be stored in source code. This applies to all credentials including those used to connect to third-party model endpoints. Credentials must be managed and stored securely using:
- Secret management systems (e.g., HashiCorp Vault, Kubernetes Secrets, AWS Secrets Manager)
- Environment variables injected at runtime (not baked into images)
- Encrypted configuration files with access controls
Implementation Checklist
- [ ] Inventory all API keys in use across AI systems
- [ ] Classify each by use case (human user, service, agent, CI/CD)
- [ ] Deploy an OIDC Identity Provider if not already available
- [ ] For each use case, implement the appropriate OAuth 2.1 grant type
- [ ] Deploy API gateway for legacy API key conversion (if needed during migration)
- [ ] Set and communicate a deprecation timeline for API keys
- [ ] Monitor API key usage and track migration progress
- [ ] Remove API key support after migration is complete
- [ ] Scan source code repositories for hardcoded credentials
- [ ] Migrate any discovered hardcoded credentials to a secret management system
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: RedHatProductSecurity
- Source: RedHatProductSecurity/prodsec-skills
- License: Apache-2.0
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.