跳到正文
@ericzakariasson· @ericzakariasson · X·· 2026-08-26AI 评分37
AI 导读

Grok Bot 新增凭据保险库(vault)功能,凭据在需要时通过特殊访问路径调用,全程不以明文形式暴露给模型。用户说"提交一个登录故障的 bug"时,Bot 只生成带标题、不含 token 的 Linear 调用,由宿主(host)查找该智能体的 Linear API key 并构造真实 HTTP 请求,凭据仅在最终工具调用构造处出现。

正文

this card allows grok bot to store credentials securely in a vault! when the credential is needed, it goes through a special access path where its never exposed to the model in plain text

later when you say "file a bug that login is broken", the bot turns that into a linear call with just the title (no token). the host knows that tool call is linear's, looks up this agent's linear api key, and builds the real http request. linear creates it, and the bot gets back "sent it, we're good". the host where the final tool call is constructed is also the only place the credential shows up

here's roughly how it works

来源:@ericzakariasson · x.com