Skip to content
Back to skills

Bitwarden Secrets

ASecurity

Safely access Bitwarden or Vaultwarden secrets via the bw CLI with redacted outputs by default. Use for vault sync, item search, metadata retrieval, and (only with explicit confirmation) revealing a single secret field.

  • 33 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added May 30, 2026
toolspythongoshellbashapi

Works with

  • cli
  • api

Security analysis

A100/100

Pro scans all 5 files and shows the line behind each finding

Scanned May 30, 2026

npx -y skills add dvcrn/openclaw-skills-marketplace --skill bitwarden-secrets --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Bitwarden Secrets?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Bitwarden Secrets
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/dvcrn-bitwarden-secrets/badge)](https://www.skillsdirectory.com/skills/dvcrn-bitwarden-secrets)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: bitwarden-secrets
description: "Safely access Bitwarden or Vaultwarden secrets via the bw CLI with redacted outputs by default. Use for vault sync, item search, metadata retrieval, and (only with explicit confirmation) revealing a single secret field."
---

# Bitwarden Secrets (safe-by-default)

Use this skill to interact with Bitwarden/Vaultwarden through `bw` while minimizing accidental secret leakage.

## Prerequisites
- `bw` CLI installed.
- Server configured (`bw config server <url>`).
- Logged in (`bw login --apikey`) and unlocked (`bw unlock`) so `BW_SESSION` is available.

## Commands
```bash
cd skills/bitwarden-secrets
python3 scripts/vw_cli.py status
python3 scripts/vw_cli.py sync
python3 scripts/vw_cli.py search --query google
python3 scripts/vw_cli.py get --id <item_id>
```

### Bootstrap helper (optional)
Load runtime vars + refresh session + sync in one step:
```bash
source scripts/vw_bootstrap.sh
# or after shell reload:
vw-openclaw-ready
```

### Reveal (explicit only)
By default, do not reveal secret values in chat.
Use reveal only with explicit user consent and temporary policy override:
```bash
export VW_REVEAL_ALLOW=1
python3 scripts/vw_cli.py reveal --id <item_id> --field password --confirm YES_REVEAL
unset VW_REVEAL_ALLOW
```

## Safety policy
- Default outputs are redacted/metadata-only.
- No bulk secret dumps.
- Prefer IDs + labels and retrieve only the minimum needed field.
- Reveal requires BOTH `VW_REVEAL_ALLOW=1` and `--confirm YES_REVEAL`.

Files in this skill

  • SKILL.md1.5 KB
  • scripts/vw_bootstrap.sh1.7 KB
  • scripts/vw_cli.py3.9 KB
  • scripts/vw_env_export.sh1.5 KB
  • setup-checklist.md906 B

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…