Secrets
Secrets contains your stored secrets and uploads waiting for your decision. Select an item to open its contents and available actions. On larger screens, the list and details appear together.
Stored secrets
Section titled “Stored secrets”Stored secrets appear alphabetically by name. Each entry shows its description, when present, and either its environment variable count or SSH-key algorithm.
If a secret has temporary access, its entry also identifies the client, or the number of clients, and the next expiry time. Open Secret details to see the operation covered by each grant and end it early.
New secret opens the Secret editor. You can create a group of environment variables or generate or import an SSH key. A secret’s type cannot be changed after creation.
Incoming uploads
Section titled “Incoming uploads”Incoming uploads lists proposals received from paired clients that still need review. Each entry identifies the proposed secret, the uploading client, and when the upload arrived. The section count is separate from the stored-secret count.
An upload is a proposal: it does not create or change a stored secret until you approve it. Open the Secret upload page to inspect its contents, adjust supported fields, and approve or reject it. Decided uploads leave this list; their outcomes remain available through the audit log within its retention period.
Use agentknock secret upload to send values or a private key from a client. The CLI waits for the phone to receive the proposal, then finishes without waiting for your review.
Global AI instructions
Section titled “Global AI instructions”The Global AI instructions card opens instructions that apply to every AI review, together with any instructions for the client and the secrets being reviewed. If the empty card is collapsed, open it first to reveal its edit action.
You can prepare instructions while AI review is inactive. Saving instructions does not enable AI review or change a secret’s access mode. See Global AI instructions for their scope and behavior.