Skip to content
Back to skills

Dynamic Config Management

ASecurity

Manage application configuration—schemas, validation, .env.example, placeholder detection, fail-fast startup. Use when adding env vars or centralizing config.

  • 25 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added September 6, 2026
ai-agents

Security analysis

A100/100

Scanned September 6, 2026

npx -y skills add charlieviettq/awesome-agent-skill --skill dynamic-config-management --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Dynamic Config Management?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Dynamic Config Management
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/charlieviettq-dynamic-config-management-awesome-agent-skill/badge)](https://www.skillsdirectory.com/skills/charlieviettq-dynamic-config-management-awesome-agent-skill)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: dynamic-config-management
description: "Manage application configuration—schemas, validation, .env.example, placeholder detection, fail-fast startup. Use when adding env vars or centralizing config."
allowed-tools: Read, Glob, Grep
---

# Dynamic Config Management

Centralize and validate configuration at startup. Reduces "works on my machine" and silent misconfiguration in deployed environments.

## When to use

- New service or deploy target
- Mystery bugs from missing/wrong env vars
- Standardizing config across dev/staging/prod

## When not to use

- Secrets rotation policy (use team secret manager docs)
- Feature flag product logic (may overlap with feature-flag systems)

## Workflow

1. **Inventory** — list all config keys, required vs optional, defaults
2. **Schema** — validate types and allowed values (Zod, pydantic, envconfig, etc.)
3. **`.env.example`** — committed template with placeholders, no real secrets
4. **Fail fast** — app refuses to start if required keys missing or invalid
5. **Document** — README section: key, purpose, example placeholder

## Checklist

- [ ] No secrets in repo or logs
- [ ] Placeholder detection (`changeme`, `TODO`, empty required vars)
- [ ] Different files or prefixes per environment documented
- [ ] CI loads test config explicitly (not developer `.env`)
- [ ] Config dump endpoint disabled in production

## Anti-patterns

- Reading os.environ scattered across codebase
- Defaulting production credentials to dev values
- Silent fallbacks that hide misconfiguration

## Output

- Config schema module
- Updated `.env.example`
- Startup validation with actionable error messages

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…