sgit newsroom v0.1.29 · snapshot 2026-09-24

Reading room · what-can-it-do.games.sgit.ai

On this page

Reading room / what-can-it-do.games.sgit.ai · raw text · live ↗

From what-can-it-do.games.sgit.ai, the page as fetched on 2026-09-25 · open the live page ↗Everything on this sheet is the source site's own text; the newsroom's chrome is outside it.

Read credentials stored where it runs

read.credential.host: which products grant it, what stands in the way, what narrows it, and who wants it.

Source: https://what-can-it-do.games.sgit.ai/map/capabilities/read.credential.host/index.html↗ · site v0.8.0 · this file is generated from the same content as the page, so the two cannot drift. Every page on this site has a .md twin; internal links below point at them.


Play↗ / The map↗ / The capabilities↗ / Read credentials stored where it runs

Read credentials stored where it runs

read.credential.host — read × credential at host reach (the machine, container or account it runs as). Family: identity. Effect: cannot be undone.

Granted by 4 of 9

ProfileControl on the pathEvidenceVia
Claude Code — web container↗● noneobservedshell (Bash)
Claude Code — local · confirm off↗● nonedocumentedshell (Bash)
Claude Code — local · confirm on↗● nonedocumentedshell (Bash)
Claude Desktop — local tools↗● nonedocumentedlocal files and commands (when enabled)

What narrows it

The setting: keep credentials out of the account the agent runs as: a credential helper, a separate account, or a container without your home mounted

What it costs: an afternoon, and re-authenticating where the agent needs a credential of its own

Tier after: boundary

Questions that ask about it

In the mandates

Edit the primitives ↗ · edit the reductions ↗


Site index for agents↗ · HTML version↗