{"id":"fc97e9ee-d84b-49dc-beee-d8cf4c56ecdd","entityType":"agent","slug":"brenner-axiom-gopass-skill","name":"gopass-skill","canonicalUrl":"https://www.xpersona.co/agent/brenner-axiom-gopass-skill","canonicalPath":"/agent/brenner-axiom-gopass-skill","generatedAt":"2026-10-09T21:33:01.829Z","source":"GITHUB_OPENCLEW","claimStatus":"UNCLAIMED","verificationTier":"NONE","summary":{"evidence":{"source":"editorial-content","verified":true,"confidence":"high","updatedAt":"2026-04-15T05:21:22.124Z","emptyReason":null},"description":"Gopass Skill Gopass Skill Manage secrets securely using $1, the GPG-encrypted password store for teams. Prerequisites - gopass installed and initialized (gopass init) - GPG key configured for the agent - At least one secret store mounted Commands List secrets Read a secret (password/value only) The -o flag outputs only the first line (the secret value), without metadata. Read with metadata Shows the full entry including any key-v","descriptionLabel":"Technical summary","evidenceSummary":"Capability contract not published. No trust telemetry is available yet. Last updated 4/15/2026.","installCommand":"git clone https://github.com/brenner-axiom/gopass-skill.git","sourceUrl":"https://github.com/brenner-axiom/gopass-skill","homepage":null,"primaryLinks":[{"label":"View Source","url":"https://github.com/brenner-axiom/gopass-skill","kind":"source"}],"safetyScore":89,"overallRank":42.1,"popularityScore":0,"trustScore":null,"claimedByName":null,"isOwner":false,"seoDescription":"Gopass Skill Gopass Skill Manage secrets securely using $1, the GPG-encrypted password store for teams. Prerequisites - gopass installed and initialized (gopass"},"coverage":{"evidence":{"source":"public-profile","verified":false,"confidence":"medium","updatedAt":"2026-04-15T05:21:22.124Z","emptyReason":null},"protocols":[{"protocol":"MCP","label":"MCP","status":"self-declared","notes":"Declared in the public agent profile."},{"protocol":"OPENCLEW","label":"OpenClaw","status":"self-declared","notes":"Declared in the public agent profile."}],"capabilities":[{"label":"decrypt","status":"self-declared"},{"label":"multiple","status":"self-declared"}],"verifiedCount":0,"selfDeclaredCount":4,"capabilityMatrix":{"rows":[{"key":"MCP","type":"protocol","support":"unknown","confidenceSource":"profile","notes":"Listed on profile"},{"key":"OPENCLEW","type":"protocol","support":"unknown","confidenceSource":"profile","notes":"Listed on profile"},{"key":"decrypt","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"},{"key":"multiple","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"}],"flattenedTokens":"protocol:MCP|unknown|profile protocol:OPENCLEW|unknown|profile capability:decrypt|supported|profile capability:multiple|supported|profile"}},"adoption":{"evidence":{"source":"no-adoption-signals","verified":false,"confidence":"low","updatedAt":"2026-04-15T05:21:22.124Z","emptyReason":"No source adoption metrics were available."},"stars":0,"forks":0,"downloads":null,"packageName":null,"latestVersion":null,"tractionLabel":null},"release":{"evidence":{"source":"agent-index","verified":false,"confidence":"medium","updatedAt":"2026-02-25T01:46:52.291Z","emptyReason":null},"lastUpdatedAt":"2026-04-15T05:21:22.124Z","lastCrawledAt":"2026-02-25T01:46:52.291Z","lastIndexedAt":null,"nextCrawlAt":"2026-02-26T01:46:52.291Z","lastVerifiedAt":null,"highlights":[]},"execution":{"evidence":{"source":"GITHUB OPENCLEW","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No published capability contract is available yet."},"installCommand":"git clone https://github.com/brenner-axiom/gopass-skill.git","setupComplexity":"low","setupSteps":["Setup complexity is LOW. This package is likely designed for quick installation with minimal external side-effects.","Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data."],"contract":{"contractStatus":"missing","authModes":[],"requires":[],"forbidden":[],"supportsMcp":false,"supportsA2a":false,"supportsStreaming":false,"inputSchemaRef":null,"outputSchemaRef":null,"dataRegion":null,"contractUpdatedAt":null,"sourceUpdatedAt":null,"freshnessSeconds":null},"invocationGuide":{"preferredApi":{"snapshotUrl":"https://www.xpersona.co/api/v1/agents/brenner-axiom-gopass-skill/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/brenner-axiom-gopass-skill/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/brenner-axiom-gopass-skill/trust"},"curlExamples":["curl -s \"https://www.xpersona.co/api/v1/agents/brenner-axiom-gopass-skill/snapshot\"","curl -s \"https://www.xpersona.co/api/v1/agents/brenner-axiom-gopass-skill/contract\"","curl -s \"https://www.xpersona.co/api/v1/agents/brenner-axiom-gopass-skill/trust\""],"jsonRequestTemplate":{"query":"summarize this repo","constraints":{"maxLatencyMs":2000,"protocolPreference":["MCP","OPENCLEW"]}},"jsonResponseTemplate":{"ok":true,"result":{"summary":"...","confidence":0.9},"meta":{"source":"GITHUB_OPENCLEW","generatedAt":"2026-10-09T21:33:01.828Z"}},"retryPolicy":{"maxAttempts":3,"backoffMs":[500,1500,3500],"retryableConditions":["HTTP_429","HTTP_503","NETWORK_TIMEOUT"]}},"endpoints":{"dossierUrl":"https://www.xpersona.co/api/v1/agents/brenner-axiom-gopass-skill/dossier","snapshotUrl":"https://www.xpersona.co/api/v1/agents/brenner-axiom-gopass-skill/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/brenner-axiom-gopass-skill/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/brenner-axiom-gopass-skill/trust"}},"reliability":{"evidence":{"source":"runtime-metrics","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No trust, reliability, or runtime telemetry is available."},"trust":{"status":"unavailable","handshakeStatus":"UNKNOWN","verificationFreshnessHours":null,"reputationScore":null,"p95LatencyMs":null,"successRate30d":null,"fallbackRate":null,"attempts30d":null,"trustUpdatedAt":null,"trustConfidence":"unknown","sourceUpdatedAt":null,"freshnessSeconds":null},"decisionGuardrails":{"doNotUseIf":["Contract metadata is missing or unavailable for deterministic execution."],"safeUseWhen":[],"riskFlags":["missing_or_unavailable_contract","trust_data_unavailable","schema_references_missing"],"operationalConfidence":"low"},"executionMetrics":{"observedLatencyMsP50":null,"observedLatencyMsP95":null,"estimatedCostUsd":null,"uptime30d":null,"rateLimitRpm":null,"rateLimitBurst":null,"lastVerifiedAt":null,"verificationSource":null},"runtimeMetrics":{"successRate":null,"avgLatencyMs":null,"avgCostUsd":null,"hallucinationRate":null,"retryRate":null,"disputeRate":null,"p50Latency":null,"p95Latency":null,"lastUpdated":null}},"benchmarks":{"evidence":{"source":"no-benchmark-data","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No benchmark suites or observed failure patterns are available."},"suites":[],"failurePatterns":[]},"artifacts":{"evidence":{"source":"GITHUB OPENCLEW","verified":false,"confidence":"high","updatedAt":"2026-04-15T05:21:22.124Z","emptyReason":null},"readme":"# Gopass Skill\n\nManage secrets securely using [gopass](https://github.com/gopasspw/gopass), the GPG-encrypted password store for teams.\n\n## Prerequisites\n\n- `gopass` installed and initialized (`gopass init`)\n- GPG key configured for the agent\n- At least one secret store mounted\n\n## Commands\n\n### List secrets\n```bash\ngopass ls\n```\n\n### Read a secret (password/value only)\n```bash\ngopass show -o <path>\n```\nThe `-o` flag outputs only the first line (the secret value), without metadata.\n\n### Read with metadata\n```bash\ngopass show <path>\n```\nShows the full entry including any key-value pairs stored below the password line.\n\n### Store a secret\n```bash\necho \"my-secret-value\" | gopass insert -f <path>\n```\nThe `-f` flag forces overwrite without confirmation (safe for automation).\n\n### Store multi-line secrets\n```bash\ngopass insert -m <path>\n```\nOpens an editor for multi-line content (e.g., JSON tokens, certificates).\n\n### Delete a secret\n```bash\ngopass rm <path>\n```\n\n### Search secrets by name\n```bash\ngopass find <keyword>\n```\n\n### Search secret contents\n```bash\ngopass grep <pattern>\n```\n\n## Store Organization\n\nOrganize secrets hierarchically by service:\n\n```\nopenclaw/\n├── github/\n│   ├── axiom_pat          # Personal Access Token\n│   └── axiom_username     # Username\n├── codeberg-token         # API token\n├── signal/\n│   ├── bot_number         # Bot phone number\n│   └── admin_number       # Admin phone number\n└── google/\n    └── calendar_token     # OAuth token\n```\n\n### Naming Conventions\n- Use lowercase with hyphens: `my-service/api-token`\n- Group by service: `github/`, `codeberg/`, `signal/`\n- Prefix agent-specific secrets: `openclaw/` for shared infrastructure\n\n## Usage Patterns\n\n### In shell commands\n```bash\n# Use command substitution to inject secrets\ncurl -H \"Authorization: token $(gopass show -o openclaw/github/axiom_pat)\" https://api.github.com/user\n\n# Basic auth\ncurl -u \"$(gopass show -o codeberg/username):$(gopass show -o codeberg/password)\" https://codeberg.org/api/v1/user\n```\n\n### In environment variables\n```bash\nFORGEJO_ACCESS_TOKEN=$(gopass show -o openclaw/codeberg-token) forgejo-mcp --cli get_my_user_info\n```\n\n### Storing new credentials\n```bash\n# Store a new API token\necho \"ghp_abc123...\" | gopass insert -f openclaw/github/new-token\n\n# Store with metadata\ngopass insert -m openclaw/myservice/api-key\n# Line 1: the secret value\n# Line 2+: key: value metadata\n```\n\n## Security Rules\n\n1. **NEVER** echo or print secret values in logs or output\n2. **NEVER** store secrets in environment variables, .env files, or config files\n3. **ALWAYS** use `gopass show -o` with command substitution (`$(...)`)\n4. **ALWAYS** use `-f` flag when inserting programmatically (avoids interactive prompts)\n5. **NEVER** pass secrets as command-line arguments visible in `ps` output — use stdin or env vars\n6. Secrets are encrypted at rest with GPG — only authorized keys can decrypt\n7. Rotation: update secrets with `echo \"new-value\" | gopass insert -f <path>`\n\n## Multi-Agent Access\n\nGopass supports multiple GPG recipients per store:\n```bash\n# Add a new recipient (agent or human)\ngopass recipients add <gpg-key-id>\n\n# List current recipients\ngopass recipients\n```\n\nEach agent should have its own GPG key. Access is scoped per store — agents only see secrets in stores where their key is a recipient.\n\n## Troubleshooting\n\n### \"gpg: decryption failed: No secret key\"\nThe agent's GPG key doesn't have access to this secret. Add the key as a recipient.\n\n### \"gopass: command not found\"\nInstall gopass: https://github.com/gopasspw/gopass/releases\n\n### Pinentry issues in non-interactive environments\n```bash\nexport GPG_TTY=$(tty)\n# Or for fully non-interactive:\necho \"allow-loopback-pinentry\" >> ~/.gnupg/gpg-agent.conf\ngpgconf --reload gpg-agent\n```\n","readmeExcerpt":"Gopass Skill Manage secrets securely using $1, the GPG-encrypted password store for teams. Prerequisites - gopass installed and initialized (gopass init) - GPG key configured for the agent - At least one secret store mounted Commands List secrets Read a secret (password/value only) The -o flag outputs only the first line (the secret value), without metadata. Read with metadata Shows the full entry including any key-v","codeSnippets":[],"executableExamples":[{"language":"bash","snippet":"gopass ls"},{"language":"bash","snippet":"gopass show -o <path>"},{"language":"bash","snippet":"gopass show <path>"},{"language":"bash","snippet":"echo \"my-secret-value\" | gopass insert -f <path>"},{"language":"bash","snippet":"gopass insert -m <path>"},{"language":"bash","snippet":"gopass rm <path>"}],"parameters":{},"dependencies":[],"permissions":[],"extractedFiles":[],"languages":["typescript"],"docsSourceLabel":"GITHUB OPENCLEW","editorialOverview":"Gopass Skill Gopass Skill Manage secrets securely using $1, the GPG-encrypted password store for teams. Prerequisites - gopass installed and initialized (gopass init) - GPG key configured for the agent - At least one secret store mounted Commands List secrets Read a secret (password/value only) The -o flag outputs only the first line (the secret value), without metadata. Read with metadata Shows the full entry including any key-v","editorialQuality":{"score":100,"threshold":65,"status":"ready","wordCount":368,"uniquenessScore":66,"reasons":[]}},"media":{"evidence":{"source":"no-media","verified":false,"confidence":"low","updatedAt":"2026-04-15T05:21:22.124Z","emptyReason":"No screenshots, media assets, or demo links are available."},"primaryImageUrl":null,"mediaAssetCount":0,"assets":[],"demoUrl":null},"ownerResources":{"evidence":{"source":"unclaimed","verified":false,"confidence":"low","updatedAt":"2026-04-15T05:21:22.124Z","emptyReason":"This page has not been claimed by the agent owner."},"hasCustomPage":false,"customPageUpdatedAt":null,"customLinks":[],"structuredLinks":{"docsUrl":null,"demoUrl":null,"supportUrl":null,"pricingUrl":null,"statusUrl":null},"customPage":null},"relatedAgents":{"evidence":{"source":"protocol-neighbors","verified":false,"confidence":"medium","updatedAt":"2026-10-09T21:33:01.829Z","emptyReason":null},"items":[{"id":"91842505-d59e-48ad-ae35-d504a6e8eadb","entityType":"agent","canonicalPath":"/agent/ard-urn-air-com-brainiall-mcp-nlp","slug":"ard-urn-air-com-brainiall-mcp-nlp","name":"Brainiall NLP","description":"Sentiment, toxicity, entity extraction, PII, translation, summary, QA, fraud scoring, safety audit.","url":"https://api.brainiall.com/mcp/nlp/mcp","homepage":"https://api.brainiall.com/mcp/nlp/mcp","source":"ARD_REGISTRY","protocols":["MCP"],"capabilities":["mcp","mcp-registry"],"safetyScore":95,"overallRank":93.5,"updatedAt":"2026-10-09T19:59:36.369Z","createdAt":"2026-10-09T02:32:12.319Z","downloads":null},{"id":"c07bfd45-37e3-4ca4-bce7-0f2c138264a2","entityType":"agent","canonicalPath":"/agent/ard-urn-air-ai-revuo-mcp-revuo","slug":"ard-urn-air-ai-revuo-mcp-revuo","name":"Revuo","description":"Agent-callable B2B SaaS directory: capability-structured, continuously verified listings.","url":"https://www.revuo.ai/api/mcp","homepage":"https://www.revuo.ai/api/mcp","source":"ARD_REGISTRY","protocols":["MCP"],"capabilities":["mcp","mcp-registry"],"safetyScore":95,"overallRank":93.5,"updatedAt":"2026-10-09T19:04:52.902Z","createdAt":"2026-10-09T02:32:15.408Z","downloads":null},{"id":"b72e3032-816c-4f68-bcc9-1a847aef4d79","entityType":"agent","canonicalPath":"/agent/ard-urn-air-ai-bankee-mcp-inferventis-mcp","slug":"ard-urn-air-ai-bankee-mcp-inferventis-mcp","name":"Inferventis MCP Server","description":"Loan & mortgage calculator, compound interest, ROI, crypto prices, FX conversion for AI agents.","url":"https://mcp-server-295985738387.europe-west1.run.app/mcp","homepage":"https://mcp-server-295985738387.europe-west1.run.app/mcp","source":"ARD_REGISTRY","protocols":["MCP"],"capabilities":["mcp","mcp-registry"],"safetyScore":95,"overallRank":93.5,"updatedAt":"2026-10-09T18:09:37.547Z","createdAt":"2026-10-09T02:32:16.798Z","downloads":null},{"id":"a785e560-2661-4edd-a374-5e8de7c54e7a","entityType":"agent","canonicalPath":"/agent/ard-urn-air-io-github-cleandev-fix-mcp-shortlistlens","slug":"ard-urn-air-io-github-cleandev-fix-mcp-shortlistlens","name":"ShortlistLens","description":"Structured website and review evidence for AI-assisted local-business shortlisting.","url":"https://shortlistlens-mcp.streaming22box.workers.dev/mcp","homepage":"https://shortlistlens-mcp.streaming22box.workers.dev/mcp","source":"ARD_REGISTRY","protocols":["MCP"],"capabilities":["mcp","mcp-registry"],"safetyScore":95,"overallRank":93.5,"updatedAt":"2026-10-09T18:04:03.143Z","createdAt":"2026-10-09T02:32:13.915Z","downloads":null}],"links":{"hub":"/agent","source":"/agent/source/github_openclew","protocols":[{"label":"MCP","href":"/agent/protocol/mcp"},{"label":"OpenClaw","href":"/agent/protocol/openclew"}]}}}