Skip to content
Guides

Configure credentials ​

Choose the task and continue to its guide:

TaskCredential pathNext guide
Pass a credential to a stdio MCP serverSecretReference in the server environmentPass a credential to a stdio MCP server
Authenticate a native agentExplicit credential_env mapping; Codex can also reuse eligible host authenticationConfigure agent harnesses
Pass an environment value to an ACP agent${ENV_NAME} in the ACP manifestConfigure ACP agents
Authenticate an LLM judgeM3_JUDGE_API_KEY or a judge-scoped mappingUse an LLM judge
Upload an M3 runM3_ACCESS_TOKEN in an explicitly trusted jobRun M3 in GitHub Actions

For the exact resolution and failure behavior, see the credential reference. Project environment-file behavior is in configuration.