Showing 175 open source projects for "secrets"

View related business solutions
  • Ship Agents Faster Icon
    Ship Agents Faster

    Transform your applications and workflows into powerful agentic systems at global scale.

    Gemini Enterprise Agent Platform lets you rapidly build, scale, govern and optimize production-ready agents grounded in your organization's data. The platform enables developers to build custom or pre-built agents for virtually any use case. New customers get $300 in free credits.
    Start Free
  • One Monitoring Tool for IT, OT and Cloud | Free Trial Icon
    One Monitoring Tool for IT, OT and Cloud | Free Trial

    Vendor-agnostic monitoring across on-prem servers, cloud platforms and OT devices, all in one dashboard. No more tool sprawl.

    Modern infrastructure spans data centers, cloud platforms and factory floors, and every blind spot between them is a risk. PRTG supports SNMP, WMI, SSH and other standard protocols to monitor IT, OT and hybrid environments through one customizable dashboard. Build the views your team needs, from network health to application performance, without switching tools. Try PRTG free for 30 days now.
    Try PRTG Free
  • 1
    Authenticator

    Authenticator

    Authenticator generates 2-Step Verification codes in your browser

    Authenticator generates two-factor authentication (2FA) codes in your browser. Use it to add an extra layer of security to your online accounts. Always keep a backup of your secrets in a safe location. Encrypting your secrets is strongly recommended, especially if you are logged into a Google account. Back up your secrets to a file, Google Drive, Microsoft OneDrive, or Dropbox. Sync your secrets with your Google Account. Available for Chrome, Firefox, and Microsoft Edge. Import data from Google Authenticator's official mobile App.
    Downloads: 3 This Week
    Last Update:
    See Project
  • 2
    PasteGuard

    PasteGuard

    Masks sensitive data and secrets before they reach AI

    PasteGuard is an open-source privacy proxy that protects sensitive information like personal data and API secrets by detecting and masking them before they reach large language model APIs such as OpenAI or Anthropic Claude. It sits between an application and the LLM provider, automatically replacing names, emails, tokens, and other personally identifiable information (PII) with placeholders so that external services never see raw sensitive values, and then optionally unmasking them in the returned output. ...
    Downloads: 0 This Week
    Last Update:
    See Project
  • 3
    ggshield

    ggshield

    Detect and validate 500+ types of hardcoded secrets

    GitGuardian’s ggshield is an open-source command-line interface (CLI) tool designed to help developers and security teams detect hardcoded secrets and sensitive credentials early in the development process, either locally or in CI/CD pipelines. It scans source code, configuration files, commit history, and other artifacts to automatically detect hundreds of different secret types — such as API keys, tokens, and passwords — helping prevent accidental leaks before they reach version control or production environments. ggshield can be used interactively on a developer’s machine, integrated as a pre-commit or pre-push git hook, and run as part of automated build or merge workflows to enforce security policies consistently across teams. ...
    Downloads: 0 This Week
    Last Update:
    See Project
  • 4
    Bank-Vaults

    Bank-Vaults

    CLI tool to init, unseal and configure Vault

    ...It has a CLI tool to automatically initialize, unseal, and configure Vault. It also provides a Kubernetes operator for provisioning, and a mutating webhook for injecting secrets.
    Downloads: 0 This Week
    Last Update:
    See Project
  • $300 Free Credits to Build on Google Cloud Icon
    $300 Free Credits to Build on Google Cloud

    New customers can spin up VMs, build with AI, and query data at no cost.

    Put your $300 in credit toward real workloads, then keep building with free monthly usage for 20+ products. No commitment and no charge until you upgrade.
    Start Free
  • 5
    Dagger

    Dagger

    Containerized automation engine for programmable CI/CD workflows

    ...Dagger executes tasks inside containers, ensuring that automation runs in identical environments across local machines, CI servers, or cloud infrastructure. Dagger provides a core execution engine and system API that orchestrates containers, filesystems, secrets, repositories, and other resources needed during development pipelines. Developers can write pipelines using SDKs available for multiple programming languages, enabling integration with existing development stacks and tools. It focuses on repeatability and efficiency by running tasks incrementally and caching intermediate results so that only affected operations are re-executed when changes occur.
    Downloads: 10 This Week
    Last Update:
    See Project
  • 6
    Swarmpit

    Swarmpit

    Lightweight mobile-friendly Docker Swarm management UI

    Swarmpit is an open-source, self-hosted web dashboard that simplifies Docker Swarm cluster operations. It offers management of stacks, services, secrets, volumes, networks, and allows secure team access. It visualizes real-time CPU/memory/disk metrics, supports private registry integration, and streamlines deployment flows. The interface is mobile-friendly and privacy-focused—collecting no telemetry.
    Downloads: 0 This Week
    Last Update:
    See Project
  • 7
    NullClaw

    NullClaw

    Fastest, smallest, and fully autonomous AI assistant infrastructure

    ...Its architecture is fully modular, using vtable interfaces that allow providers, channels, tools, memory backends, and runtimes to be swapped without code changes. NullClaw is secure by design, enforcing pairing-based authentication, strict sandboxing, encrypted secrets, resource limits, and workspace scoping by default. Designed for portability and independence, it supports OpenAI-compatible APIs, multiple tunnels, hardware peripherals, and edge deployments including WASM-based logic.
    Downloads: 57 This Week
    Last Update:
    See Project
  • 8
    Gitleaks

    Gitleaks

    Protect and discover secrets using Gitleaks

    Gitleaks is a fast, lightweight, portable, and open-source secret scanner for git repositories, files, and directories. With over 6.8 million docker downloads, 11.2k GitHub stars, 1.7 million GitHub Downloads, thousands of weekly clones, and over 400k homebrew installs, gitleaks is the most trusted secret scanner among security professionals, enterprises, and developers. Gitleaks-Action is our official GitHub Action. You can use it to automatically run a gitleaks scan on all your team's pull...
    Downloads: 13 This Week
    Last Update:
    See Project
  • 9
    Akamai Application Platform (for LKE)

    Akamai Application Platform (for LKE)

    App Platform for Linode Kubernetes Engine

    apl-core is the open source heart of Akamai’s App Platform for Linode Kubernetes Engine, packaging a curated set of Kubernetes building blocks into a turnkey “platform engineering” layer. Instead of assembling ingress, certificates, GitOps, secrets, and observability by hand, you install a single Helm chart and get a consistent, production-oriented baseline on LKE or any conformant Kubernetes cluster. The project provides a guided path after installation, post-install setup, and hands-on labs, so teams can go from a fresh cluster to shipping services with guardrails in place. ...
    Downloads: 12 This Week
    Last Update:
    See Project
  • Build Data Resilience - Take the Assessment Today Icon
    Build Data Resilience - Take the Assessment Today

    Can you recover when it matters most? Take this quick assessment to identify gaps and build greater recovery confidence.

    Is your recovery strategy as strong as you think? Take this quick self-assessment to check your recovery readiness and gain tailored insights. In only 2 minutes, you'll learn where you fall on the recovery readiness scale.
    Take the Assessment
  • 10
    Ente

    Ente

    End-to-end encrypted cloud for photos, videos and 2FA secrets

    Ente is a fully open-source, end‑to‑end encrypted cloud platform designed for securely storing and managing your photos, videos, and 2FA secrets — without needing to trust the service provider. It includes cross‑platform clients and a CLI for self‑hosting needs. Ente is a service that provides a fully open source, end-to-end encrypted platform for you to store your data in the cloud without needing to trust the service provider. On top of this platform, we have built two apps so far: Ente Photos (an alternative to Apple and Google Photos) and Ente Auth (a 2FA alternative to the deprecated Authy). ...
    Downloads: 9 This Week
    Last Update:
    See Project
  • 11
    Supabase CLI

    Supabase CLI

    Supabase CLI. Manage postgres migrations, run Supabase locally

    Supabase CLI is the command-line interface for managing and developing Supabase projects. It streamlines local development, database migrations, environment management, and project deployment. Designed for developers building with Supabase, the CLI provides an efficient way to work with the entire Supabase stack—PostgreSQL, auth, storage, and edge functions—directly from the terminal.
    Downloads: 36 This Week
    Last Update:
    See Project
  • 12
    EdgeVPN

    EdgeVPN

    The immutable, decentralized, statically built p2p VPN

    ...Portable. Easy to use Statically compiled VPN and a reverse proxy over p2p. EdgeVPN uses libp2p to build private decentralized networks that can be accessed via shared secrets.
    Downloads: 32 This Week
    Last Update:
    See Project
  • 13
    Yaak

    Yaak

    The most intuitive desktop API client

    ...The application is built using Tauri, Rust, and React, which contributes to its lightweight footprint, high performance, and cross-platform compatibility. One of its core design principles is being offline-first, meaning that user data, requests, and secrets are stored locally without reliance on cloud services, enhancing both privacy and control. Yaak also emphasizes developer productivity by offering features such as dynamic request templating, debugging tools, and environment-based configuration management.
    Downloads: 1 This Week
    Last Update:
    See Project
  • 14
    Cariddi

    Cariddi

    Take a list of domains, crawl urls and scan for endpoints, secrets

    Cariddi is a Go-based web reconnaissance crawler for authorized security testing and application analysis. It accepts one or many domains and recursively explores reachable URLs. During crawling, it can identify interesting endpoints, file extensions, tokens, secrets, API keys, and other potentially sensitive patterns. Custom regular expressions let researchers extend secret detection for organization-specific data. Concurrency, delays, timeouts, caching, user-agent controls, and proxy support provide control over how requests are made. Results can be printed directly or written to text and HTML outputs. ...
    Downloads: 0 This Week
    Last Update:
    See Project
  • 15
    Keyshade

    Keyshade

    Realtime secret and configuration management tool

    Keyshade is an open-source secret and configuration management platform designed to keep environment variables, API keys, and runtime configuration synchronized across local development, CI/CD, and production. It helps teams avoid hardcoding secrets or manually sharing .env files by providing a centralized system for securely storing and distributing configuration values. The platform uses public key encryption with elliptic curve cryptography to protect secrets while they are stored and transferred. It is built for developers, infrastructure teams, and modern engineering workflows that need secure collaboration without slowing down deployment. ...
    Downloads: 0 This Week
    Last Update:
    See Project
  • 16
    Lab

    Lab

    Get up and running with Jenkins on Google Kubernetes Engine

    ...The project leverages Google Kubernetes Engine to manage containerized applications and uses Jenkins pipelines to define and execute build and deployment processes declaratively. It illustrates how to deploy applications using Kubernetes primitives such as deployments, services, ingress, and secrets, enabling scalable and resilient microservices architectures. The repository also highlights best practices such as GitOps workflows, automated rollouts, and secure credential management within CI/CD pipelines.
    Downloads: 0 This Week
    Last Update:
    See Project
  • 17
    Blueprint MCP

    Blueprint MCP

    Diagram generation for understanding codebases and system architecture

    ...The control plane includes hooks for event-driven automation, allowing rules like “scale up at peak hours” or “restart unhealthy nodes automatically” to be codified and managed without manual intervention. Security and access control are built in so administrators can assign roles, manage secrets, and enforce network policies across cluster resources.
    Downloads: 0 This Week
    Last Update:
    See Project
  • 18
    MongoDB Community Kubernetes Operator

    MongoDB Community Kubernetes Operator

    MongoDB Community Kubernetes Operator

    ...It supports replica sets and sharded clusters, giving operators the flexibility to choose architectures that match their availability and performance needs. With integration into Kubernetes RBAC, secrets management, and storage classes, the operator ensures MongoDB clusters respect platform-level policies for security and data persistence.
    Downloads: 0 This Week
    Last Update:
    See Project
  • 19
    Prometheus SNMP Exporter

    Prometheus SNMP Exporter

    SNMP Exporter for Prometheus

    ...To simply get started, it's recommended to use the if_mib module with switches, access points, or routers using the public_v2 auth module, which should be a read-only access community on the target device. Note, that community strings in SNMP are not considered secrets, as they are sent unencrypted in SNMP v1 and v2c. For secure access, SNMP v3 is required.
    Downloads: 10 This Week
    Last Update:
    See Project
  • 20
    Convoy

    Convoy

    The Cloud Native Webhooks Gateway

    ...It supports both outgoing and incoming webhook use cases, making it useful for API providers as well as teams consuming external webhooks. Convoy also includes operational features such as circuit breaking, rolling secrets, static IP support, and delivery controls. It is best suited for SaaS platforms, internal platform teams, and developers building webhook-heavy products.
    Downloads: 14 This Week
    Last Update:
    See Project
  • 21
    Obfuscar

    Obfuscar

    Open source obfuscation tool for .NET assemblies

    Obfuscar is an open-source .NET obfuscator released under MIT license. It provides basic obfuscation features that help secure secrets in a .NET assembly. An obfuscation tool designed for most .NET developers. Hide everything private, while keep everything public. You can achieve such simply via default settings. Hide class/method/property/event names that you don't want to expose. This is irreversible. String contents can be compressed so that end users won't easily learn them. ...
    Downloads: 14 This Week
    Last Update:
    See Project
  • 22
    Python-Dotenv

    Python-Dotenv

    Load environment variables from .env files into Python apps

    python-dotenv is a Python utility that reads key-value pairs from a .env file and sets them as environment variables. This is especially useful for managing configuration values, secrets, or settings outside of source code, in line with the 12-factor app principles. Commonly used in Flask, Django, and other frameworks, it helps maintain clean and secure codebases across environments like development, staging, and production.
    Downloads: 6 This Week
    Last Update:
    See Project
  • 23
    dynaconf

    dynaconf

    Configuration Management for Python

    ...Optional layered system for multi environments [default, development, testing, production] (also called multi profiles). Built-in support for Hashicorp Vault and Redis as settings and secrets storage. Built-in extensions for Django and Flask web frameworks. CLI for common operations such as init, list, write, validate, export. On your own code you import and use settings object imported from your config.py file. Dynaconf prioritizes the use of environment variables and you can optionally store settings in Settings Files using any of toml|yaml|json|ini|py extension.
    Downloads: 0 This Week
    Last Update:
    See Project
  • 24
    SOPS

    SOPS

    Simple and flexible tool for managing secrets

    sops is an editor of encrypted files that supports YAML, JSON, ENV, INI and BINARY formats and encrypts with AWS KMS, GCP KMS, Azure Key Vault, age, and PGP. For the adventurous, unstable features are available in the develop branch, which you can install from source. To use sops as a library, take a look at the decrypt package. We rewrote Sops in Go to solve a number of deployment issues, but the Python branch still exists under python-sops. We will keep maintaining it for a while, and you...
    Downloads: 134 This Week
    Last Update:
    See Project
  • 25
    kMCP

    kMCP

    Kubernetes Controller for building, testing and deploying MCP servers

    KMCP is a companion toolchain for building, testing, and deploying MCP servers with a workflow that spans local development through Kubernetes production deployments. It includes a CLI for day-to-day development tasks like scaffolding new MCP projects, managing tools, building container images, and running an MCP server locally for validation. For cluster operations, it includes a Kubernetes controller that manages MCP server lifecycles using a dedicated Custom Resource Definition (CRD),...
    Downloads: 0 This Week
    Last Update:
    See Project