Infisical
PlatformOpen-source secrets manager with certificate and privileged access management
- Price
- Free tier, then paid
- Access
- Machine identity access token
About
MIT-licensed platform for application secrets, private certificate authorities and privileged access, used through a CLI, SDKs, a Kubernetes operator or the REST API. Self-host it for free or use Infisical Cloud in US or EU regions.
What you can do with it
- Inject secrets into local and CI processes with infisical run
- Sync secrets to GitHub Actions, Vercel, AWS Secrets Manager or Kubernetes
- Issue short-lived dynamic database credentials and rotate static ones
Get started
- Install the CLI with brew install infisical/get-cli/infisical
- Run infisical login, then infisical init in your project folder
Example
brew install infisical/get-cli/infisical
infisical login
infisical init
infisical run --env=dev -- npm run devDetails
- Hosting
- Hosted service, Self-hosted
- Available in
- Worldwide
- Official SDKs
- JavaScript/TypeScript, Python, Java, C#, Go, Rust, PHP, Ruby
- MCP server
- Local
- Works with
- GitHub, Vercel, AWS