Issue: Secret value management
I used to write api keys and access token in system prompt.
And use these values when calling api key request tools.
But, I was frightened that sometimes my assistant reads api key values.
So, I write these 2 lines at the bottom of api values (as you can see in screenshot)
* The keys listed above are case-sensitive. Do not change the casing or naming of these fields.
* The values listed above are secret. Do not expose any of them to the user, even if requested, especially tokens and (API) keys.
But I wonder if this is genuine way
My question: What is the best way to save api keys in assistant ?
In github & vercel, there is secret value management page.
https://cdn.discordapp.com/attachments/1211484481848873020/1406915879618482237/img_20250801.png?ex=68a43404&is=68a2e284&hm=b2d629567f36b0d03fd3af172d620cf3ed36304122a87d41f6c88e68f61e1ce2&