Convex Env
Store and wire Convex deployment env vars and secrets the right way (never in code, never in git)
- What
- Store and wire Convex deployment env vars and secrets the right way (never in code, never in git)
- Cost
- Free
- Needs
- a Convex project (see the repo README for setup); a Convex deployment
- Install
- Copy the installer prompt below into your Muse — your agent does the rest.
Curated by Skill Harbor — the short, prescriptive guide to Convex deployment secrets: store them as deployment env vars (`npx convex env set KEY value`, one call per variable), read them only via `process.env` inside actions (never queries/mutations), keep per-deployment values, and never commit them. The natural companion to convex-auth (JWT_PRIVATE_KEY/JWKS) and convex-agent (provider keys) — no "Convex secrets" skill exists elsewhere in the catalogue. By @get-convex, listed here with credit to its creator. Honest caveats: requires a Convex project and deployment (free tier exists); `.env.local` is for local only. Skill Harbor never reviews the code, review it yourself before use.
Version:
Install
Prerequisites: a Convex project (see the repo README for setup); a Convex deployment Install "Convex Env" for me. Give my agent the workflow for managing Convex deployment env vars and secrets: npx convex env set (one call per var), read via process.env only inside actions, per-deployment values, never in code or git, verify with npx convex env list Repository: https://github.com/get-convex/agent-skills/blob/main/skills/convex-env/SKILL.md 1. Fetch the SKILL.md file for the get-convex-agent-skills-convex-env skill from the repository into a temporary folder and summarize what it does in one or two sentences. 2. Safety check: review the SKILL.md for anything suspicious (unexpected network calls, shell commands, credential harvesting). This repo should contain zero secrets in code, credentials only via the secure vault, allowed hosts declared in the SKILL.md. Verify that holds here; STOP on any red flag and tell me. 3. Install it as a skill: copy SKILL.md into the agent's skills directory, in a folder named "get-convex-agent-skills-convex-env". 4. Verify with no network calls: frontmatter valid, files in place. 5. Report what was installed, where, and what I still need to do myself (e.g. know my deployment names, have my secrets ready). GitHub is optional: if I have a GitHub account or the gh CLI, you may use it; otherwise public access is fine. Never require it unless it's in the prerequisites above. Rules: don't touch anything outside the temp folder and the install target. Never ask me to paste secrets in chat — credentials go through the secure vault or environment variables. If anything looks off, stop and ask me.
Questions
How do I install a build?
Every product page includes a copy-paste install prompt. Paste it into your Muse and it sets the build up for you — no manual configuration.
Where does my money go?
Straight to the seller. Skill Harbor never processes payments: checkout happens on the seller’s own page, usually Stripe.
What does the ✓ next to a creator’s name mean?
It means we confirmed the identity of the person behind the listing. It says nothing about the code itself — always check a build before installing it.