instantly-multi-env-setup
A guide for isolating Instantly.ai workspaces and managing configuration across development, staging, and production environments.
Install
mkdir -p .claude/skills/instantly-multi-env-setup && curl -L -o skill.zip "https://agentskills.codes/api/skills/download/8971" && unzip -o skill.zip -d .claude/skills/instantly-multi-env-setup && rm skill.zipInstalls to .claude/skills/instantly-multi-env-setup
Activation
This is the description your AI agent reads to decide when to run this skill — the better it matches your request, the more reliably it fires.
Configure Instantly.ai across development, staging, and production environments.Key capabilities
- →Isolate workspaces for different environments
- →Manage per-environment API keys and secrets
- →Implement environment guards for campaign creation
- →Automate webhook registration per environment
How it works
Structures integration code to use workspace-level isolation, ensuring that development, staging, and production environments remain separate through distinct API keys and base URLs.
Inputs & outputs
When to use instantly-multi-env-setup
- →Setting up separate staging and production workspaces
- →Managing per-environment API keys and webhooks
- →Configuring environment-specific Instantly backends
- →Implementing safe deployment pipelines for integrations
About this skill
Instantly Multi-Environment Isolation
Overview
Design environment isolation and promotion without fake vendor endpoints or accidental cross-workspace mutations. Record assumptions, evidence, approval state, and rollback ownership so another operator can reproduce the result.
Prerequisites
- The target repository, Instantly workspace, environment, and accountable owner
- Current security, privacy, compliance, capacity, and change-control requirements
- An approved API v2 key only when a bounded live verification is necessary
Tool Discipline
Use Read, Glob, and Grep to inspect code, configuration, and evidence. Use WebFetch only for current first-party Instantly documentation and package metadata. Use Write or Edit only when implementation was requested and exact target files are known; never write credentials, lead data, email content, or unrestricted environment output.
Current Contract
- Use separate workspaces and keys where isolation requirements demand it.
- Workspace-group delegation uses x-as-workspace and increases cross-tenant risk.
- Environment names are not proof of identity; validate opaque workspace IDs and read-only probes.
Authentication
Use an API v2 key as Authorization: Bearer <key> against https://api.instantly.ai/api/v2. Grant only the endpoint-specific scopes needed, inject the key from an approved server-side secret manager, and never print, persist, commit, or place it in a URL. Treat key creation, rotation, revocation, member changes, workspace delegation, and production access as owner-approved actions.
Instructions
- Document environment-to-workspace IDs, owners, scopes, data classes, domains, and webhook URLs.
- Use local fakes for development and synthetic records for staging.
- Store one scoped key reference per environment; never use fallback production credentials.
- Add startup guards that compare the expected opaque workspace ID before mutation.
- Promote code and schemas separately from campaigns, leads, accounts, or webhooks.
- Test denied cross-environment access and maintain a credential and webhook rollback plan.
Approval Boundaries
Do not create, rotate, reveal, or revoke keys; invite or remove members; delegate across workspaces; connect sending accounts; create or activate campaigns; import or delete leads; change suppression or retention; register, patch, resume, or delete webhooks; alter plans or paid capacity; transmit diagnostics; or perform another production mutation without explicit approval from the accountable owner. Keep diagnosis read-only unless implementation was requested.
Output
Return the workspace-safe scope, files and contracts inspected, exact API v2 routes and required scopes, evidence collected, validation result, sensitive fields redacted, remaining risk, accountable owner, approval state, and rollback or next action.
Error Handling
| Condition | Response |
|---|---|
401 | Stop and verify that the bearer key exists, is current, and was not revoked. |
403 | Stop and compare the operation with its exact required scope; do not broaden to all:all by default. |
429 | Coordinate the workspace-wide budget, honor endpoint overrides, and bound retries. |
| Schema or tenant mismatch | Fail closed, preserve redacted evidence, and do not retry a mutation. |
Examples
Use a compact handoff that makes scope, mutation authority, and evidence reviewable.
Input:
dev=local-fake; staging=workspace-a; prod=workspace-b
Expected handoff:
isolation=verified; fallback-keys=0; mutations=separate-change
Resources
When not to use it
- →Sharing API keys across environments
- →Auto-activating production campaigns
Prerequisites
Limitations
- →Requires separate API keys for each workspace
- →Production campaigns require manual activation
How it compares
Provides a formal strategy for workspace isolation and environment guards rather than using a single global configuration.
Compared to similar skills
instantly-multi-env-setup side by side with the closest alternatives in the catalog.
| Skill | Installs | Updated | Safety | Difficulty |
|---|---|---|---|---|
| instantly-multi-env-setup (this skill) | 0 | 2mo | Review | Advanced |
| posthog-deploy-integration | 1 | 2mo | Caution | Advanced |
| mcp-builder | 136 | 5mo | Review | Advanced |
| turborepo | 61 | 3mo | Review | Intermediate |
Try saying
Example prompts that trigger this skill in your AI assistant.
More by jeremylongshore
View all by jeremylongshore →You might also like
posthog-deploy-integration
jeremylongshore
Deploy PostHog integrations to Vercel, Fly.io, and Cloud Run platforms. Use when deploying PostHog-powered applications to production, configuring platform-specific secrets, or setting up deployment pipelines. Trigger with phrases like "deploy posthog", "posthog Vercel", "posthog production deploy", "posthog Cloud Run", "posthog Fly.io".
mcp-builder
anthropics
Guide for creating high-quality MCP (Model Context Protocol) servers that enable LLMs to interact with external services through well-designed tools. Use when building MCP servers to integrate external APIs or services, whether in Python (FastMCP) or Node/TypeScript (MCP SDK).
turborepo
vercel
Turborepo monorepo build system guidance. Triggers on: turbo.json, task pipelines, dependsOn, caching, remote cache, the "turbo" CLI, --filter, --affected, CI optimization, environment variables, internal packages, monorepo structure/best practices, and boundaries. Use when user: configures tasks/workflows/pipelines, creates packages, sets up monorepo, shares code between apps, runs changed/affected packages, debugs cache, or has apps/packages directories.
telegram-mini-app
davila7
Expert in building Telegram Mini Apps (TWA) - web apps that run inside Telegram with native-like experience. Covers the TON ecosystem, Telegram Web App API, payments, user authentication, and building viral mini apps that monetize. Use when: telegram mini app, TWA, telegram web app, TON app, mini app.
stripe-integration
wshobson
Implement Stripe payment processing for robust, PCI-compliant payment flows including checkout, subscriptions, and webhooks. Use when integrating Stripe payments, building subscription systems, or implementing secure checkout flows.
backend-dev-guidelines
langfuse
Comprehensive backend development guide for Langfuse's Next.js 14/tRPC/Express/TypeScript monorepo. Use when creating tRPC routers, public API endpoints, BullMQ queue processors, services, or working with tRPC procedures, Next.js API routes, Prisma database access, ClickHouse analytics queries, Redis queues, OpenTelemetry instrumentation, Zod v4 validation, env.mjs configuration, tenant isolation patterns, or async patterns. Covers layered architecture (tRPC procedures → services, queue processors → services), dual database system (PostgreSQL + ClickHouse), projectId filtering for multi-tenant isolation, traceException error handling, observability patterns, and testing strategies (Jest for web, vitest for worker).