Skip to content
Back to skills

Skill Configuration Management

BSecurity

Secrets management, environment-specific configs, safe defaults, feature flags, configuration-as-code, compliance and audit trails. Use when managing secrets, configuring deployments, or implementing feature flags.

  • 4 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added September 7, 2026
developmentpythongobashrailsawsazuregitdatabase

Security analysis

B88/100
  • criticalSends environment variables or credentials to an external URL

Pro shows the line behind each finding and how to fix it

Scanned September 7, 2026

npx -y skills add saitarrun/Sdlc-ai-workflow --skill skill-configuration-management --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Skill Configuration Management?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Skill Configuration Management
[![Security: B — Skills Directory](https://www.skillsdirectory.com/api/skills/saitarrun-skill-configuration-management/badge)](https://www.skillsdirectory.com/skills/saitarrun-skill-configuration-management)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: skill-configuration-management
description: Secrets management, environment-specific configs, safe defaults, feature flags, configuration-as-code, compliance and audit trails. Use when managing secrets, configuring deployments, or implementing feature flags.
version: 1.0.0
---

# Skill: Configuration Management

Secrets stay secret. Configs are code. Feature flags enable safe rollout.

## Secrets Management

**Never commit secrets**:
```bash
# ✗ Don't
export DATABASE_PASSWORD="my-password"
git add .env
git commit

# ✓ Do
export DATABASE_PASSWORD=$(aws secretsmanager get-secret-value ...)
# or
source <(vault kv get -format=json secret/db | jq -r '.data | to_entries | .[] | "\(.key)=\(.value)"')
```

**Tools**: Vault, AWS Secrets Manager, Azure Key Vault

## Environment Configs

```yaml
# config/environments.yaml

development:
  database:
    host: localhost:5432
    pool_size: 5
  cache:
    ttl: 60s

production:
  database:
    host: db.prod.example.com:5432
    pool_size: 100
  cache:
    ttl: 3600s
```

**Load by environment**:
```python
import yaml
config = yaml.load(open(f'config/{ENV}.yaml'))
```

## Feature Flags

**Safe rollout**:
```
feature_auth_v2: enabled for [10%, 25%, 50%, 100%]

if feature_flag("auth_v2"):
    use_new_auth()
else:
    use_old_auth()
```

**Tools**: LaunchDarkly, Unleash, custom

## Safe Defaults

```
# ✓ Good defaults
class Config:
    DEBUG = False  # Never debug in production
    TIMEOUT = 30   # Reasonable default
    RETRIES = 3    # Sensible retry count

# ✗ Bad defaults
class Config:
    DEBUG = True   # Oops, left it on
    TIMEOUT = 3600  # Way too long
```

---

**Status**: Ready for configuration work  
**Best for**: Secrets, configs, feature flags, environment management

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…