Use it when your goal in servers and infrastructure is clear and you can limit it to the data and actions it actually needs.
Stripe Projects
Provision SaaS services + sync creds via Stripe Projects
What does it add to Hermes?
Provision SaaS services + sync creds via Stripe Projects
Stripe Projects is a skill related to servers and infrastructure. It helps the agent understand or operate technical resources that can affect cost, availability, and security.
This plain-language explanation is based on the publisher description. The original text remains visible for verification.
Do not add it merely to experiment when Hermes already has a simpler path, or when you cannot review its source and permissions.
Best for users who want a repeatable way of working inside Hermes.
Start in a test environment with a limited account and inspect status before creating or deleting anything.
Provision SaaS services + sync creds via Stripe Projects
This entry was indexed from Hermes Optional Skills. Our explanation interprets the type and domain without inventing a capability not present upstream.
The source is official or editorially reviewed, but you still need to review permissions and version compatibility.
Inspect, install, then test.
- 01Open the source
Match the publisher, license, and description to your need. Check the real update history.
- 02Review permissions and secrets
Never paste a secret value into this site. Use environment-variable names and grant the smallest scope.
- 03Copy setup only after review
The controls below copy text. They do not execute commands on your device.
- 04Test with a non-sensitive task
Inspect the visible tools, then exclude write or delete tools you do not need.
Review the command, then copy it.
hermes skills install stripe-projectsHermes Belarabi does not execute this command. Installation happens on your device and remains subject to Hermes scanning and your review.
Exactly what Hermes loads when this skill runs.
Reproduced from the official documentation. Read it before enabling the skill: this text becomes the agent's instructions.
Provision SaaS services + sync creds via Stripe Projects.
Skill metadata
A lookup table. Do not read it all; find the row that applies to you.
| Source | Optional — install with hermes skills install official/payments/stripe-projects |
| Path | optional-skills/payments/stripe-projects |
| Version | 0.1.0 |
| Author | Teknium (teknium1), Hermes Agent |
| License | MIT |
| Platforms | linux, macos |
| Tags | Payments, Stripe, Projects, Provisioning, Infrastructure |
| Related skills | stripe-link-cli, mpp-agent |
Reference: full SKILL.md
Explains the idea itself. Read it slowly; the later sections build on it.
Wraps the Stripe Projects ↗ CLI plugin so Hermes can provision SaaS services (Neon, Twilio, Vercel, etc.), generate and sync credentials into the user's .env, and manage billing across providers from one place.
Gated [linux, macos] while the broader payments cluster matures on Windows. The Stripe CLI itself is cross-platform; this gate is a posture for the cluster, not a hard limit.
When to Use
Explains the idea itself. Read it slowly; the later sections build on it.
Trigger phrases:
- "set up <provider>", "provision <Neon|Twilio|Vercel|...>", "create a database"
- "give me a <Postgres|Redis|Twilio number|...> for this project"
- "manage my stack credentials", "rotate this key", "upgrade my plan"
- "what providers can I add?"
If the user already has a provider account, this skill can still connect it with stripe projects link <provider>. If the user wants to use an existing provider resource, such as an existing database or Vercel project, check provider support first; many providers currently support provisioning new resources but not importing existing ones.
Prerequisites
Explains the idea itself. Read it slowly; the later sections build on it.
- Stripe CLI installed (Homebrew on macOS, package manager on Linux, or download from https://docs.stripe.com/stripe-cli/install)
- Stripe Projects plugin installed
- A Stripe account. If the user doesn't have one yet, the CLI can guide them through sign-in or account creation in the browser during setup.
Install
Ordered, practical steps. Run one and confirm it worked before moving on.
macOS:
brew install stripe/stripe-cli/stripe
stripe plugin install projectsLinux: follow the platform-specific install at https://docs.stripe.com/stripe-cli/install, then:
stripe plugin install projectsHow to Run
Explains the idea itself. Read it slowly; the later sections build on it.
All commands run through the terminal tool from inside the user's project directory (the CLI writes .env and .projects/vault/vault.json into the CWD).
Procedure
Explains the idea itself. Read it slowly; the later sections build on it.
1. Initialize the project
cd <project-root>
stripe projects initThis creates .projects/vault/vault.json (encrypted credential store) and prepares the project to receive providers.
2. Discover available providers
stripe projects catalogLists every provider Stripe Projects supports — databases, hosting, auth, AI, analytics, messaging, etc.
3. Add a service
stripe projects add <provider>/<service>Examples:
stripe projects add neon/postgresstripe projects add twilio/smsstripe projects add runloop/sandbox
The CLI provisions the service in the user's own account with the provider, generates credentials, syncs them into .env, and records the resource in the vault. The user may need to confirm a tier selection or pricing prompt.
4. Verify
stripe projects listShould show the newly added provider and its .env keys.
5. Manage / upgrade / remove
stripe projects upgrade <provider> # tier change
stripe projects remove <provider> # deprovision
stripe projects rotate <provider> # rotate credentialsPitfalls
Explains the idea itself. Read it slowly; the later sections build on it.
.envwrites are real writes. The CLI appends to whatever.envis in the project root. If the user's.envis gitignored (normal), the keys land safely; if not, this skill could be a credential-leak vector. Always check.gitignorefirst.- Per-project state.
.projects/vault/vault.jsonis per-project. Provisioning the same service in two different projects creates two separate resources — and two bills. - Billing happens on Stripe's side. Tier prompts during
add/upgradeare real charges; surface them to the user before confirming. - Provider availability changes. The catalog grows; if a provider the user names isn't listed,
stripe projects catalog | grep <name>first instead of failing theaddcall. - Credentials in vault are encrypted but
.envis plaintext. Standard.envhygiene applies — never commit it. - Removing a service does NOT always destroy the underlying resource. Some providers leave a paused/dormant resource behind. Check the provider's own dashboard after
removefor high-cost services (managed databases especially).
Verification
Explains the idea itself. Read it slowly; the later sections build on it.
stripe projects --version && stripe projects listExit code 0 inside an initialized project means the plugin is healthy.