Credential custody for agents: use secrets blind (ssh/http/smtp/git/db), never in context.
Secrets management SDK for AI agents. Keep credentials out of context windows.
DemiPass is a client SDK for the Dustforge identity platform. It provides MCP tools that teach AI agents (Claude Code, Codex, or any MCP-compatible agent) how to handle secrets without exposing them in the prompt, completion, or logs.
npm install demipass
Add to your .mcp.json:
{
"mcpServers": {
"demipass": {
"command": "node",
"args": ["node_modules/demipass/mcp-server.js"],
"env": {
"DEMIPASS_URL": "https://api.dustforge.com",
"DEMIPASS_TOKEN": "your-bearer-token"
}
},
"buoy": {
"command": "node",
"args": ["node_modules/demipass/buoy-mcp.js"],
"env": {
"BUOY_URL": "https://api.dustforge.com",
"BUOY_TOKEN": "your-bearer-token"
}
}
}
}
| Tool | Description |
|---|---|
demipass_store | Deposit a secret — encrypted at rest, never returned |
demipass_ssh | SSH via ref code — password injected server-side |
demipass_use | Combined token request + execute in one call |
demipass_search | Find secrets by name, type, or provider |
demipass_list | List all secrets (names + metadata, never values) |
demipass_expiring | List secrets expiring within N days |
demipass_rotate | Rotate a secret with context transfer |
demipass_rotate_blind | Server-side password rotation — new password never enters agent context |
demipass_whoami | Check identity, trust band, wallet status |
demipass_get_token | Request a 30-second use-token |
demipass_execute | Redeem a use-token |
demipass_onboard | Self-onboard to Dustforge |
demipass_genesis_seed | Get the ODT seed document |
demipass_genesis_submit | Submit origin refraction (permanent) |
demipass_genesis_verify | Verify refraction matches origin |
demipass_genesis_status | Check genesis status |
| Tool | Description |
|---|---|
buoy_tick | Drop a temporal anchor (begin, complete, handoff, decision, etc.) |
buoy_verify | Verify a tick signature |
buoy_chain_verify | Verify chain integrity |
buoy_stats | Total ticks, streak, first/last |
buoy_ledger | Read recent tick history |
const demipass = require('demipass');
demipass.configure({
baseUrl: 'https://api.dustforge.com',
bearerToken: 'your-token',
});
// Store a secret
await demipass.store({ name: 'my-api-key', value: 'sk-...', type: 'api_key' });
// SSH via ref code (password never in your code)
await demipass.ssh({ ref: 'DP-PWD-myserver-7f3a9c1e', target_host: '1.2.3.4', command: 'uptime' });
// Search secrets
await demipass.search({ query: 'openrouter' });
// Blind password rotation (new password never visible)
await demipass.rotateBlind({ ref: 'DP-PWD-old-ref', target_host: '1.2.3.4', reason: 'exposed' });
DemiPass is a client SDK — all encryption, storage, and secret execution happens on the Dustforge server. This package provides:
The secrets vault, trust gradient, velocity throttle, and other security features are implemented in Dustforge. See dustforge.com for the platform documentation.
Every stored secret gets a routed reference code:
DP-PWD-myserver-7f3a9c1e
│ │ │ │
│ │ │ └── unique nonce
│ │ └── target hint
│ └── secret type (PWD/API/TKN/SSH/CRT/SEC)
└── DemiPass prefix
Share ref codes freely — they're routing addresses, not secrets.
MIT — AKStrapped LLC
Source-derived launch command. Check the maintainer’s required arguments and credentials before running:
npx -y demipassMerge this template into ~/Library/Application Support/Claude/claude_desktop_config.json. Keep existing servers. Add any arguments, credentials, and permissions required by the maintainer; this template has not been install-tested.
{
"mcpServers": {
"com-dustforge-demipass": {
"command": "npx",
"args": [
"-y",
"demipass"
]
}
}
}Restart Claude Desktop completely for changes to take effect. Confirm the server appears connected in the client’s tool list, then try a read-only example from its documentation.
Claude Desktop setup referencedemipassnpmcom.dustforge/demipass works with any MCP-compatible client. Copy the config snippet from the Configuration section above and add it to the file shown for your client, then restart the application.
~/Library/Application Support/Claude/claude_desktop_config.jsonRestart Claude Desktop completely for changes to take effect.~/.cursor/mcp.jsonRestart Cursor for changes to take effect..vscode/mcp.jsonReload VS Code window for changes to take effect.~/.codeium/windsurf/mcp_config.jsonRestart Windsurf for changes to take effect..mcp.jsonSave at the project root, then start Claude Code in that project and review the MCP server approval prompt. Keep real credentials out of shared files.