Secrets Management software centralizes the storage and distribution of API keys, passwords, and encryption certificates. These tools prevent sensitive credentials from being hardcoded into source code or leaked through insecure communication channels. This type of software serves engineering teams and security administrators who need to automate the deployment of environment variables across multiple servers. Self-hosting these apps ensures that decryption keys and access logs remain on private infrastructure rather than on external servers. This approach prevents external vendors from accessing the private keys used to secure internal systems.
This page lists 6 open source tools in the Secrets Management category. The most popular are Infisical, Password Pusher and Yopass. Most use the Apache-2.0 or MIT license, and 6 offer an official Docker image.
Centralize application secrets, certificates, and privileged access management with end to end encryption across multiple environments.
Securely share sensitive information using encrypted links that automatically expire after a set time or view count.
Securely share secrets, passwords, and files using end-to-end encryption and automatic one-time expiration links.
A platform for engineering teams to secure and deploy application secrets and environment variables across environments.
Share sensitive information via encrypted one-time secrets that are deleted immediately after the first read.
Manage application secrets and environment variables using public key encryption with real time runtime updates.
Join our newsletter to get shiny new open source software delivered to your inbox. Unsubscribe anytime.