Setup & Installation
What This Skill Does
Wraps the Azure Key Vault Secrets SDK for JavaScript, giving TypeScript applications a typed interface for storing, retrieving, and rotating secrets and cryptographic keys in Azure. Covers full secret lifecycle operations including versioning, soft delete, backup, and restore. Also supports RSA and EC key creation, encryption, signing, and key wrapping via the CryptographyClient.
Instead of managing credential storage, versioning, and key rotation manually, this gives you a typed SDK that handles soft delete, expiry enforcement, and cryptographic operations against a managed service with Azure RBAC.
When to use it
- Storing database connection strings and API keys in a centralized vault instead of .env files
- Rotating encryption keys on a schedule with automated Key Vault rotation policies
- Retrieving specific secret versions during staged rollouts or rollback scenarios
- Signing payloads with RSA keys stored in Key Vault without exposing key material
- Backing up secrets from one vault and restoring them to another during disaster recovery