:schema https://fnox.jdx.dev/schema.json
The secrets the owner's tasks and the dev server read, DECLARED and nothing else: no value and no provider is written here, so there is nothing to leak and nothing to choose for you. fnox is optional. Without it a command reads these names from its environment. To use it, put your own provider in fnox.local.toml (gitignored) or in ~/.config/fnox/config.toml, for example age or 1Password.
tools/with-secrets.sh (used by the dev daemon and the deploy tasks) runs a command under
fnox exec when fnox is installed and resolves these, and runs it plainly otherwise.
A name nobody has provided is left unset (the Worker then says what is missing), not an error here.
12if_missing = "ignore"
14[secrets.CLOUDFLARE_API_TOKEN] 15description = "Cloudflare API token: Workers AI under wrangler dev (no local emulation), and deploys" 16 17[secrets.CLOUDFLARE_ACCOUNT_ID] 18description = "The Cloudflare account that runs the Worker" 19 20[secrets.LMJTFY_TYPESAFE_API_KEY] 21description = "Jev (TypeSafe) key for the dev server; without it the page says Jev is offline" 22 23[secrets.LMJTFY_GITHUB_TOKEN] 24description = "The clone proxy's read-only fine-grained GitHub token (Contents: read); without it a clone is answered with 503"