secret-management

Open-source projects categorized as secret-management

Top 23 secret-management Open-Source Projects

  • sops

    Simple and flexible tool for managing secrets

  • Project mention: Pico.sh – Hacker Labs | news.ycombinator.com | 2024-04-21

    My script just sets up default .sops.yaml for https://github.com/getsops/sops

    You can further edit .sops.yaml(eg have multiple of them) and decide how you split secrets in your directory tree to further customize who can decrypt the secrets.

    It works pretty well for prod/dev splits, etc

  • trufflehog

    Find and verify secrets

  • Project mention: Seeking help to identify vulnerabilities and secrets in a website backup file | /r/HowToHack | 2023-07-03

    Trufflehog

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
  • infisical

    ♾ Infisical is the open-source secret management platform: Sync secrets across your team/infrastructure and prevent secret leaks.

  • Project mention: IBM to Acquire HashiCorp, Inc | news.ycombinator.com | 2024-04-24

    You should look into Infisical: https://github.com/Infisical/infisical

    Disclaimer: I’m one of the founders.

  • git-secret

    :busts_in_silhouette: A bash-tool to store your private data inside a git repository.

  • Project mention: Gittuf – a security layer for Git using some concepts introduced by TUF | news.ycombinator.com | 2023-10-24

    I've happily been using git-secret (https://sobolevn.me/git-secret/) for encrypting non-critical (i.e. non-production) secrets for a while now. It sounds like Gittuf will do a lot more than git-secret, but for the use case of encrypted files specifically, is there a significant different about with the approach that Gittuf has taken?

  • teller

    Cloud native secrets management for developers - never leave your command line for secrets.

  • Project mention: Teller: Universal secret manager, never leave your terminal to use secrets | news.ycombinator.com | 2024-01-17
  • ots

    🔐 Share end-to-end encrypted secrets with others via a one-time URL

  • awesome-iam

    👤 Identity and Access Management knowledge for cloud platforms

  • Project mention: Why use OpenID Connect instead of plain OAuth2? | news.ycombinator.com | 2023-06-27

    You can start with: https://github.com/kdeldycke/awesome-iam . But beware of the rabbit hole!

  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

    WorkOS logo
  • helm-secrets

    A helm plugin that help manage secrets with Git workflow and store them anywhere

  • Project mention: Simplified Deployment: A Deep Dive into Containerization and Helm | dev.to | 2023-10-09

    helm plugin install https://github.com/databus23/helm-diff helm plugin install https://github.com/aslafy-z/helm-git helm plugin install https://github.com/jkroepke/helm-secrets

  • berglas

    A tool for managing secrets on Google Cloud

  • Project mention: How to deploy a Django app to Google Cloud Run using Terraform | dev.to | 2024-01-01

    Secret Manager: secure storage for sensitive data e.g passwords.

  • dotenv-vault

    sync .env files—from the creator of `dotenv`.

  • Project mention: Node.js 20.6 adds built-in support for .env files | dev.to | 2024-04-12

    dotenv-vault is another popular package that lets you encrypt your secret and decrypt the file just in time. They are quite helpful for production and CIT environments but are not supported currently.

  • FreeIPA

    Mirror of FreeIPA, an integrated security information management solution

  • Project mention: Non-interactive SSH password authentication | news.ycombinator.com | 2023-12-25
  • argocd-vault-plugin

    An Argo CD plugin to retrieve secrets from Secret Management tools and inject them into Kubernetes secrets

  • conjur

    CyberArk Conjur automatically secures secrets used by privileged users and machine identities

  • Project mention: OpenBao – FOSS Fork of HashiCorp Vault | news.ycombinator.com | 2023-12-08
  • onepassword-operator

    The 1Password Connect Kubernetes Operator provides the ability to integrate Kubernetes Secrets with 1Password. The operator also handles autorestarting deployments when 1Password items are updated.

  • Project mention: Show HN: Infisical – open-source secret management platform | news.ycombinator.com | 2023-07-19

    For one password you will need to create a kind called `OnePasswordItem` as described here https://github.com/1Password/onepassword-operator. This is similar to the `InfisicalSecret` you need to create with us https://infisical.com/docs/integrations/platforms/kubernetes

  • cryptr

    Cryptr: a GUI for Hashicorp's Vault

  • Project mention: HashiCorp Vault Forked into OpenBao | news.ycombinator.com | 2023-12-08

    My colleague at Adobe built one for our own use, since HashiCorp didn't provide one at the time: https://github.com/adobe/cryptr

    IIRC HashiCorp was not interested in supporting these kinds of tools because they were in direct competition with the Vault enterprise offering.

  • pass-tomb

    A pass extension that helps you keep the whole tree of passwords encrypted inside a Tomb.

  • strongbox

    A secret manager for AWS (by schibsted)

  • cocert

    Split and distribute your private keys securely amongst untrusted network

  • scrt

    A command-line secret manager for developers, sysadmins, and devops.

  • kube-secrets-init

    Kubernetes mutating webhook for `secrets-init` injection

  • harp

    Secret management by contract toolchain (by elastic)

  • novops

    Cross-platform secret & config manager for development and CI environments

  • Project mention: Teller: Universal secret manager, never leave your terminal to use secrets | news.ycombinator.com | 2024-01-17

    Novops - https://github.com/PierreBeucher/novops - is a similar tools with active maintenance, more flexibility (generic interface, support plain strings and different secrets providers). Teller is nice but lacks some features Novops aims to provide.

  • lockgit

    A CLI tool for storing encrypted data in a git repo

  • SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

secret-management related posts

Index

What are some of the best open-source secret-management projects? This list will help you:

Project Stars
1 sops 15,114
2 trufflehog 13,907
3 infisical 11,920
4 git-secret 3,621
5 teller 2,541
6 ots 1,727
7 awesome-iam 1,571
8 helm-secrets 1,302
9 berglas 1,224
10 dotenv-vault 1,012
11 FreeIPA 920
12 argocd-vault-plugin 760
13 conjur 725
14 onepassword-operator 504
15 cryptr 485
16 pass-tomb 366
17 strongbox 242
18 cocert 202
19 scrt 150
20 kube-secrets-init 146
21 harp 143
22 novops 139
23 lockgit 127

Sponsored
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com