nowfound

Dev tools · alternatives · 2026

24 alternatives to envsecrets

CLI first management of your environment secrets

Below are 24 products that do a similar job, ranked by how close each is in meaning and then by launch-day votes. envsecrets launched in 2023; newer entries below may have overtaken it.

  1. 1CF
  2. 2

    CLI-first management of your environment secrets.

    2023 · its alternatives →

  3. 3EH
  4. 4E2

    Hey HN, I'm so happy to finally show you all this release after years of hard work. I posted the first version of EnvKey to HN back in 2017 (https://news.ycombinator.com/item?id=15330757), then went through YC in W18 (https://news.ycombinator.com/item?id=16569534). EnvKey is an end-to-end encrypted configuration and secrets manager. It protects your organization's API keys, encryption keys, credentials, and other secrets, and makes it easy to run servers, scripts, tests, and everything else with the latest config. It also helps you avoid duplication in your…

    2022 · v2.envkey.com · its alternatives →

  5. 5
    EnvKey▲79

    Protect api keys and credentials. Keep config in sync.

    2017 · its alternatives →

  6. 6AC
  7. 7ES
  8. 8

    Centralize environments, secrets, and configuration

    2023 · its alternatives →

  9. 9
    Shelve▲156

    Effortless & secure secrets management

    2025 · its alternatives →

  10. 10

    Develop faster, eliminate complexity, protect your secrets

    2022 · its alternatives →

  11. 11
    Phase▲159

    Open-source secrets management for developers

    2023 · its alternatives →

  12. 12

    Manage secrets in your terminal with biometric unlock.

    2022 · its alternatives →

  13. 13

    The first secure cloud native storage for PII,PHI, PCI & KYC

    2023 · its alternatives →

  14. 14OS
  15. 15
    Secli▲85

    A CLI to store secrets locally

    2022 · its alternatives →

  16. 16IO

    Last month, we open-sourced Infisical (https://github.com/Infisical/infisical) - a simple, end-to-end encrypted tool to sync environment variables across your team and infrastructure. You can use it to store environment variables and inject them into your applications locally or into CI/CD and production infrastructure. It can be used with any language/framework and is platform independent with a super easy setup. We know secret managers exist but, in our experience, they’re too complicated, not comprehensive, not user-friendly, or a mix of all three — other…

    2022 · github.com · its alternatives →

  17. 17OV

    We built OneCLI because AI agents are being given raw API keys. And it's going about as well as you'd expect. We figured the answer isn't "don't give agents access," it's "give them access without giving them secrets." OneCLI is an open-source gateway that sits between your AI agents and the services they call. You store your real credentials once in OneCLI's encrypted vault, and give your agents placeholder keys. When an agent makes an HTTP call through the proxy, OneCLI matches the request by host/path, verifies the agent should have access, swaps the placeholder for the real…

    Mar 2026 · github.com · its alternatives →

  18. 18
    Deposure▲185

    Launch your APIs live effortlessly

    2025 · its alternatives →

  19. 19

    hey HN, Jonathan and Guy here, creators of OneCLI (https://onecli.sh/). OneCLI is an open source vault for AI Agents. Traditional vaults are used to store your secrets and, on demand, provide them to you all in a secure way, trusting the person to keep them safe. We figured that in the agent's world, this is not the case, as you don't know what happens with the secret after it's delivered to the agent, or where it was saved. Or maybe someone even manipulated them to hand them over... From that understanding, we decided to build a network gateway that sits between your AI…

    Jul 2026 · github.com · its alternatives →

  20. 20

    Manage product and application code security at scale

    2023 · its alternatives →

  21. 21CR
  22. 22KC

    Hi HN, I built KeyEnv because I was tired of the "can you Slack me the Stripe key?" workflow. The problem: My team's secrets lived in a mix of Slack DMs, shared Google Docs, and .env files that definitely weren't in .gitignore at some point. Enterprise tools like Vault required more DevOps time than we had. Doppler was close but felt heavier than we needed. What KeyEnv does: keyenv init # link project keyenv pull # sync secrets to local .env keyenv run -- npm start # inject secrets, run command That's basically it. Secrets are encrypted client-side (AES-256-GCM) before leaving your machine.…

    Jan 2026 · keyenv.dev · its alternatives →

  23. 23
    DCP▲104

    Give your AI agents encrypted permission and keys

    May 2026 · dcpagent.com · its alternatives →

  24. 24
    Cred▲97

    OAuth credential delegation for AI agents

    Apr 2026 · cred.ninja · its alternatives →

Also compare

Ranked by how close each launch is in meaning, then by votes. Prices were read from each product’s own site when checked and can change. Refine with your own description →