Passing API keys or secrets as normal env lets any dependency in your agent's sandbox read and potentially leak them.
The Credentials API for Gemini Managed Agents keeps secrets secure and injects them on the wire only for trusted domains, so sandboxed code can't access raw tokens. Works for environment variables, CLIs and MCP Server.
Learn more 👇
