Back to list
danwag06

send-secret-clipboard

by danwag06

P2P encrypted secret sharing.

2🍴 1📅 Jan 20, 2026

SKILL.md


name: send-secret-clipboard version: 0.0.2 description: This skill should be used when the user asks to "send clipboard as secret", "share what I copied", "send my clipboard securely", "share copied text", "share my clipboard", "send what's in my clipboard", "share copied credentials", "send copied password", "share clipboard with teammate", "send-secret from clipboard", "pbpaste send secret", "securely send what I copied", "share my password securely", or wants to share clipboard contents without the agent seeing them. macOS only - uses pbpaste to pipe clipboard directly to send-secret CLI. allowed-tools: Bash(pbpaste ), Bash(npx send-secret)

Send Secret from Clipboard (macOS)

Share clipboard contents as an encrypted secret without the agent ever seeing what was copied. The clipboard is piped directly to send-secret, bypassing the agent's context entirely.

Security Model

This is one of the safest agentic patterns for secret sharing:

ActionSafeReason
pbpaste | send-secretYesClipboard bypasses agent context
User tells agent the secretNOSecret enters conversation context
Agent reads from file then pipesNOFile content enters context

Why this works: The user copies the secret to clipboard manually. The agent runs pbpaste | send-secret without ever seeing what's in the clipboard. The piped data goes directly from clipboard to the encryption process.

Platform Support

PlatformCommandAvailable
macOSpbpasteYes
Linux (X11)xclip -selection clipboard -oVaries
Linux (Wayland)wl-pasteVaries
Windowspowershell Get-ClipboardVaries

This skill focuses on macOS. For other platforms, verify the clipboard command exists first.

Command Reference

# Basic clipboard send
pbpaste | npx send-secret

# Multiple recipients
pbpaste | npx send-secret -n 3

# With timeout
pbpaste | npx send-secret -t 300

# Combined
pbpaste | npx send-secret -n 5 -t 600

Workflow

  1. Instruct user to copy their secret to clipboard (Cmd+C)
  2. Confirm they have copied the secret
  3. Ask about view count and timeout preferences
  4. Run pbpaste | npx send-secret with options
  5. Provide URL to user
  6. Inform to keep terminal open until delivered

Use Cases

API key sharing

User: "I need to share an API key with my teammate"

Response:

  1. "Copy the API key to your clipboard (Cmd+C)"
  2. Wait for confirmation
  3. Run: pbpaste | npx send-secret
  4. Share the URL

Password sharing

User: "Send my copied password securely"

pbpaste | npx send-secret -t 120  # 2 minute timeout for passwords

Quick credential sharing

User: "Share what I just copied"

pbpaste | npx send-secret

Important Notes

  • User must copy first: The agent cannot access clipboard contents, so user must manually copy
  • Clipboard is transient: If user copies something else, original secret is lost
  • No file metadata: Unlike file sends, clipboard sends have no filename - they appear as text secrets
  • Empty clipboard fails: If clipboard is empty, send-secret will error with "No data to send"

Verification

To verify clipboard has content (without seeing it):

pbpaste | wc -c  # Shows byte count, not content

If this returns 0, clipboard is empty.

Error Handling

ErrorCauseResolution
"No data to send"Clipboard emptyAsk user to copy secret first
"pbpaste: command not found"Not macOS or pbpaste missingUse file-based send instead
Process exits immediatelyClipboard may be binary/incompatibleUse file-based send instead

What NOT To Do

# NEVER ask user to paste in chat
"Paste your secret here"  # WRONG: enters agent context

# NEVER try to read clipboard for verification
pbpaste  # WRONG: would display clipboard to agent

# NEVER echo clipboard
echo $(pbpaste) | send-secret  # WRONG: subshell exposes content

Example Interaction

User: "I need to send my database password to the ops team"

Agent response:

  1. "Copy the database password to your clipboard using Cmd+C"
  2. "Let me know when you've copied it"

User: "Done"

Agent:

pbpaste | npx send-secret -n 3 -t 300

"Here's your secure link: [URL]. It can be viewed 3 times and expires in 5 minutes. Keep this terminal open until the ops team has retrieved it."

  • send-secret-file - For sharing files by path (when secret is in a file)
  • receive-secret - For receiving secrets from send-secret URLs

Score

Total Score

60/100

Based on repository quality metrics

SKILL.md

SKILL.mdファイルが含まれている

+20
LICENSE

ライセンスが設定されている

+10
説明文

100文字以上の説明がある

0/10
人気

GitHub Stars 100以上

0/15
最近の活動

3ヶ月以内に更新がある

0/10
フォーク

10回以上フォークされている

0/5
Issue管理

オープンIssueが50未満

+5
言語

プログラミング言語が設定されている

+5
タグ

1つ以上のタグが設定されている

0/5

Reviews

💬

Reviews coming soon