meta-creds.sh: operator CLI for Meta credential store

This commit is contained in:
operator
2026-10-03 14:48:24 +00:00
parent 4b92277686
commit 1a0662d752
2 changed files with 79 additions and 0 deletions
+32
View File
@@ -0,0 +1,32 @@
# Meta Credential Store (operator-only)
Centralized encrypted store for Muse, Instagram, Facebook account credentials.
## Location (VM only)
- `/etc/netvm/meta-credentials/store.age` — age-encrypted JSON (600 root)
- `/etc/netvm/meta-credentials/.age-key` — age private key (600 root)
- `/usr/local/bin/meta-creds.sh` — CLI (700 root)
## Usage
```bash
sudo meta-creds.sh list muse # list account IDs (no secrets)
sudo meta-creds.sh get muse <id> # output JSON (never log this)
sudo meta-creds.sh add muse <id> # interactive prompts
```
## Schema
```json
{
"muse": {
"<id>": {
"email": "...", "phone": "...",
"age_verified": "true",
"instagram_linked": "<handle>",
"verified_by": "human", "verified_at": "2026-10-03T...",
"notes": "..."
}
},
"instagram": {"<id>": {"username": "...", "password": "...", "email": "..."}},
"facebook": {"<id>": {"email": "...", "password": "..."}}
}
```
## Rules
- Operators only. Developers never get access (prevents board leaks).
- Decrypt transiently, never log values, never put in chat/memory.
- Human validates Instagram linking; operators automate after.