[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"skill-convex-env":3,"mdc-yhxtyv-key":32,"related-org-convex-env":124,"related-repo-convex-env":310},{"slug":4,"name":4,"fn":5,"description":6,"org":7,"tags":12,"stars":21,"repoUrl":22,"updatedAt":23,"license":24,"forks":25,"topics":26,"repo":27,"sourceUrl":30,"mdContent":31},"env","manage Convex environment variables","Manage Convex env vars \u002F secrets (set, wire into actions, never hardcode). TRIGGER on an API-key\u002Fsecret\u002Fenv-var request.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},"convex","Convex","https:\u002F\u002Fpexgzepcugksgbtrxkhf.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Forg-logos\u002Fconvex.png","get-convex",[13,17,18],{"name":14,"slug":15,"type":16},"Security","security","tag",{"name":9,"slug":8,"type":16},{"name":19,"slug":20,"type":16},"Environment Variables","environment-variables",2,"https:\u002F\u002Fgithub.com\u002Fget-convex\u002Fconvex-codex-plugin","2026-07-12T08:00:09.422913","Apache-2.0",0,[],{"repoUrl":22,"stars":21,"forks":25,"topics":28,"description":29},[],"Codex plugin for the hosted Convex MCP server","https:\u002F\u002Fgithub.com\u002Fget-convex\u002Fconvex-codex-plugin\u002Ftree\u002FHEAD\u002Fplugins\u002Fconvex\u002Fskills\u002Fenv","---\nname: \"env\"\ndescription: \"Manage Convex env vars \u002F secrets (set, wire into actions, never hardcode). TRIGGER on an API-key\u002Fsecret\u002Fenv-var request.\"\nlicense: \"Apache-2.0\"\n---\n\n# Manage env vars + secrets\n\nStore secrets as Convex deployment env vars (npx convex env set), read them with process.env in actions, never commit them.\n\n## Steps\n1. `npx convex env set KEY value` (per deployment).\n2. Read via process.env.KEY inside actions (not queries\u002Fmutations).\n3. Never hardcode or commit secrets; add to .env.local only for local.\n4. Confirm with `npx convex env list`.\n\n## Rules\n- Secrets live in Convex env vars, never in code or git.\n- process.env only in actions ('use node' if needed), not queries\u002Fmutations.\n- Different deployments need their own values.\n",{"data":33,"body":34},{"name":4,"description":6,"license":24},{"type":35,"children":36},"root",[37,46,52,59,99,105],{"type":38,"tag":39,"props":40,"children":42},"element","h1",{"id":41},"manage-env-vars-secrets",[43],{"type":44,"value":45},"text","Manage env vars + secrets",{"type":38,"tag":47,"props":48,"children":49},"p",{},[50],{"type":44,"value":51},"Store secrets as Convex deployment env vars (npx convex env set), read them with process.env in actions, never commit them.",{"type":38,"tag":53,"props":54,"children":56},"h2",{"id":55},"steps",[57],{"type":44,"value":58},"Steps",{"type":38,"tag":60,"props":61,"children":62},"ol",{},[63,76,81,86],{"type":38,"tag":64,"props":65,"children":66},"li",{},[67,74],{"type":38,"tag":68,"props":69,"children":71},"code",{"className":70},[],[72],{"type":44,"value":73},"npx convex env set KEY value",{"type":44,"value":75}," (per deployment).",{"type":38,"tag":64,"props":77,"children":78},{},[79],{"type":44,"value":80},"Read via process.env.KEY inside actions (not queries\u002Fmutations).",{"type":38,"tag":64,"props":82,"children":83},{},[84],{"type":44,"value":85},"Never hardcode or commit secrets; add to .env.local only for local.",{"type":38,"tag":64,"props":87,"children":88},{},[89,91,97],{"type":44,"value":90},"Confirm with ",{"type":38,"tag":68,"props":92,"children":94},{"className":93},[],[95],{"type":44,"value":96},"npx convex env list",{"type":44,"value":98},".",{"type":38,"tag":53,"props":100,"children":102},{"id":101},"rules",[103],{"type":44,"value":104},"Rules",{"type":38,"tag":106,"props":107,"children":108},"ul",{},[109,114,119],{"type":38,"tag":64,"props":110,"children":111},{},[112],{"type":44,"value":113},"Secrets live in Convex env vars, never in code or git.",{"type":38,"tag":64,"props":115,"children":116},{},[117],{"type":44,"value":118},"process.env only in actions ('use node' if needed), not queries\u002Fmutations.",{"type":38,"tag":64,"props":120,"children":121},{},[122],{"type":44,"value":123},"Different deployments need their own values.",{"items":125,"total":309},[126,141,156,171,188,205,220,232,251,265,282,296],{"slug":8,"name":8,"fn":127,"description":128,"org":129,"tags":130,"stars":138,"repoUrl":139,"updatedAt":140},"guide Convex project setup and usage","Routes general Convex requests to the right project skill. Use when the user asks which Convex skill to use or gives an underspecified Convex app task.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[131,134,135],{"name":132,"slug":133,"type":16},"Backend","backend",{"name":9,"slug":8,"type":16},{"name":136,"slug":137,"type":16},"Database","database",34,"https:\u002F\u002Fgithub.com\u002Fget-convex\u002Fagent-skills","2026-07-12T08:00:45.091281",{"slug":142,"name":142,"fn":143,"description":144,"org":145,"tags":146,"stars":138,"repoUrl":139,"updatedAt":155},"convex-create-component","build reusable Convex components","Builds reusable Convex components with isolated tables and app-facing APIs. Use for new components, reusable backend modules, integrations, or component boundary work.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[147,150,153,154],{"name":148,"slug":149,"type":16},"API Development","api-development",{"name":151,"slug":152,"type":16},"Architecture","architecture",{"name":132,"slug":133,"type":16},{"name":9,"slug":8,"type":16},"2026-07-12T08:00:39.428577",{"slug":157,"name":157,"fn":158,"description":159,"org":160,"tags":161,"stars":138,"repoUrl":139,"updatedAt":170},"convex-migration-helper","plan Convex schema and data migrations","Plans Convex schema and data migrations with widen-migrate-narrow and @convex-dev\u002Fmigrations. Use for breaking schema changes, backfills, table reshaping, or zero-downtime rollouts.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[162,163,164,167],{"name":132,"slug":133,"type":16},{"name":9,"slug":8,"type":16},{"name":165,"slug":166,"type":16},"Data Engineering","data-engineering",{"name":168,"slug":169,"type":16},"Migration","migration","2026-07-12T08:00:51.27967",{"slug":172,"name":172,"fn":173,"description":174,"org":175,"tags":176,"stars":138,"repoUrl":139,"updatedAt":187},"convex-performance-audit","audit Convex application performance","Audits Convex performance for reads, subscriptions, write contention, and function limits. Use for slow features, insights findings, OCC conflicts, or read amplification.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[177,178,181,184],{"name":9,"slug":8,"type":16},{"name":179,"slug":180,"type":16},"Debugging","debugging",{"name":182,"slug":183,"type":16},"Monitoring","monitoring",{"name":185,"slug":186,"type":16},"Performance","performance","2026-07-12T08:00:50.02928",{"slug":189,"name":189,"fn":190,"description":191,"org":192,"tags":193,"stars":138,"repoUrl":139,"updatedAt":204},"convex-quickstart","initialize Convex in applications","Creates or adds Convex to an app. Use for new Convex projects, npm create convex@latest, frontend setup, env vars, or the first npx convex dev run.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[194,197,198,201],{"name":195,"slug":196,"type":16},"CLI","cli",{"name":9,"slug":8,"type":16},{"name":199,"slug":200,"type":16},"Frontend","frontend",{"name":202,"slug":203,"type":16},"Onboarding","onboarding","2026-07-12T08:00:43.436152",{"slug":206,"name":206,"fn":207,"description":208,"org":209,"tags":210,"stars":138,"repoUrl":139,"updatedAt":219},"convex-setup-auth","set up authentication and access control","Sets up Convex auth, identity mapping, and access control. Use for login, auth providers, users tables, protected functions, or roles in a Convex app.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[211,214,217,218],{"name":212,"slug":213,"type":16},"Access Control","access-control",{"name":215,"slug":216,"type":16},"Auth","auth",{"name":132,"slug":133,"type":16},{"name":9,"slug":8,"type":16},"2026-07-12T08:00:48.652641",{"slug":221,"name":221,"fn":222,"description":223,"org":224,"tags":225,"stars":21,"repoUrl":22,"updatedAt":231},"add","add capabilities to Convex applications","Add a capability to the CURRENT Convex + Next.js project — consults the served Convex capability catalog for always-current procedures (billing, crons, auth, agent, search, …); falls back to built-in hosting or @convex-dev component search. TRIGGER when the user runs $add, or asks to add hosting\u002Fpublishing or any backend capability to an existing Convex app.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[226,227,228],{"name":132,"slug":133,"type":16},{"name":9,"slug":8,"type":16},{"name":229,"slug":230,"type":16},"Next.js","next-js","2026-07-12T07:59:59.358004",{"slug":233,"name":233,"fn":234,"description":235,"org":236,"tags":237,"stars":21,"repoUrl":22,"updatedAt":250},"agent","build AI agents with Convex","Build an AI agent \u002F RAG feature on Convex (@convex-dev\u002Fagent: threads, tools, vector search). TRIGGER on an AI-agent\u002Fchatbot\u002FRAG request.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[238,241,244,247],{"name":239,"slug":240,"type":16},"Agents","agents",{"name":242,"slug":243,"type":16},"Engineering","engineering",{"name":245,"slug":246,"type":16},"RAG","rag",{"name":248,"slug":249,"type":16},"Search","search","2026-07-12T08:00:01.921824",{"slug":216,"name":216,"fn":252,"description":253,"org":254,"tags":255,"stars":21,"repoUrl":22,"updatedAt":264},"add authentication to Convex applications","Add sign-in (passkeys by default, OAuth\u002Fpassword optional) to the current Convex app, wired correctly incl. auth.config.ts. TRIGGER on a login\u002Fauth request for an existing app.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[256,257,260,261],{"name":215,"slug":216,"type":16},{"name":258,"slug":259,"type":16},"Authentication","authentication",{"name":9,"slug":8,"type":16},{"name":262,"slug":263,"type":16},"OAuth","oauth","2026-07-18T05:12:54.443056",{"slug":266,"name":266,"fn":267,"description":268,"org":269,"tags":270,"stars":21,"repoUrl":22,"updatedAt":281},"billing","integrate Stripe billing in Convex apps","Add Stripe billing to a Convex app via @convex-dev\u002Fstripe (checkout + auto-verified webhook + subscription gating). TRIGGER on a payments\u002Fbilling\u002Fsubscription request.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[271,272,275,278],{"name":9,"slug":8,"type":16},{"name":273,"slug":274,"type":16},"Payments","payments",{"name":276,"slug":277,"type":16},"Stripe","stripe",{"name":279,"slug":280,"type":16},"Webhooks","webhooks","2026-07-12T08:00:08.123246",{"slug":283,"name":283,"fn":284,"description":285,"org":286,"tags":287,"stars":21,"repoUrl":22,"updatedAt":295},"check-updates","upgrade Convex component versions","Check the CURRENT Convex app's pinned components against the latest recommended versions and offer to upgrade them — e.g. the passkey auth component's new email-first sign-in. TRIGGER when the user runs \u002Fcheck-updates or $check-updates, asks 'are my components up to date', 'any updates', 'upgrade auth', 'upgrade my components', or wants the newest features after a quickstart. Applies each upgrade behind a build gate (verify-or-revert) with the user's consent.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[288,291,292],{"name":289,"slug":290,"type":16},"Configuration","configuration",{"name":9,"slug":8,"type":16},{"name":293,"slug":294,"type":16},"Maintenance","maintenance","2026-07-12T08:00:03.236862",{"slug":297,"name":297,"fn":298,"description":299,"org":300,"tags":301,"stars":21,"repoUrl":22,"updatedAt":308},"convex-authz","audit and harden Convex authorization","Audit and harden a Convex app's authorization: identity-from-arg impersonation, missing per-document ownership checks, and public queries leaking PII\u002Ffinancial data by a client-supplied id — the single largest real-defect cluster measured against generated Convex backends (44 of 214). Runs a deterministic scan for the 3 shapes, then applies the canonical requireIdentity\u002FrequireOwner pattern, then verifies with tsc. TRIGGER on 'secure my app', 'audit auth', 'add login', 'who can access this data', or an explicit 'audit my authz'. NOT always-on. SKIP when there is no convex\u002F directory.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[302,303,306,307],{"name":215,"slug":216,"type":16},{"name":304,"slug":305,"type":16},"Code Analysis","code-analysis",{"name":9,"slug":8,"type":16},{"name":14,"slug":15,"type":16},"2026-07-12T08:00:04.516752",26,{"items":311,"total":365},[312,318,325,332,339,345,352],{"slug":221,"name":221,"fn":222,"description":223,"org":313,"tags":314,"stars":21,"repoUrl":22,"updatedAt":231},{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[315,316,317],{"name":132,"slug":133,"type":16},{"name":9,"slug":8,"type":16},{"name":229,"slug":230,"type":16},{"slug":233,"name":233,"fn":234,"description":235,"org":319,"tags":320,"stars":21,"repoUrl":22,"updatedAt":250},{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[321,322,323,324],{"name":239,"slug":240,"type":16},{"name":242,"slug":243,"type":16},{"name":245,"slug":246,"type":16},{"name":248,"slug":249,"type":16},{"slug":216,"name":216,"fn":252,"description":253,"org":326,"tags":327,"stars":21,"repoUrl":22,"updatedAt":264},{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[328,329,330,331],{"name":215,"slug":216,"type":16},{"name":258,"slug":259,"type":16},{"name":9,"slug":8,"type":16},{"name":262,"slug":263,"type":16},{"slug":266,"name":266,"fn":267,"description":268,"org":333,"tags":334,"stars":21,"repoUrl":22,"updatedAt":281},{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[335,336,337,338],{"name":9,"slug":8,"type":16},{"name":273,"slug":274,"type":16},{"name":276,"slug":277,"type":16},{"name":279,"slug":280,"type":16},{"slug":283,"name":283,"fn":284,"description":285,"org":340,"tags":341,"stars":21,"repoUrl":22,"updatedAt":295},{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[342,343,344],{"name":289,"slug":290,"type":16},{"name":9,"slug":8,"type":16},{"name":293,"slug":294,"type":16},{"slug":297,"name":297,"fn":298,"description":299,"org":346,"tags":347,"stars":21,"repoUrl":22,"updatedAt":308},{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[348,349,350,351],{"name":215,"slug":216,"type":16},{"name":304,"slug":305,"type":16},{"name":9,"slug":8,"type":16},{"name":14,"slug":15,"type":16},{"slug":353,"name":353,"fn":354,"description":355,"org":356,"tags":357,"stars":21,"repoUrl":22,"updatedAt":364},"convex-expert","develop Convex backend applications","Convex backend rules — consult this whenever writing or editing any code inside a convex\u002F directory (schemas, queries, mutations, actions, HTTP endpoints, crons, file storage, auth, component installation). TRIGGER before touching convex\u002F functions, so the code uses the object-form syntax, validators, indexes, and component patterns that generic models get wrong.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[358,359,360,361],{"name":132,"slug":133,"type":16},{"name":9,"slug":8,"type":16},{"name":136,"slug":137,"type":16},{"name":362,"slug":363,"type":16},"TypeScript","typescript","2026-07-18T05:12:50.448833",19]