Places-env, secure version control of environment files
Now that I have your attention (“Don’t you dare version control environment files!!”, “This can’t be safe.”) and before you tear me and my project to shreds, please allow me to take a moment to celebrate something small but meaningful: I’ve finally released a thing. Thank you. Motivation tl;dr: The existing tools and libraries for versioning and syncing environment files / secrets across team members and CI machines just didn’t cut it for me. So, I set out to create my own solution — one finally checks all my boxes. So what is places-env? (I encourage you to check the readme…
What it does
In the maker’s words, at launch
Now that I have your attention (“Don’t you dare version control environment files!!”, “This can’t be safe.”) and before you tear me and my project to shreds, please allow me to take a moment to celebrate something small but meaningful: I’ve finally released a thing. Thank you. Motivation tl;dr: The existing tools and libraries for versioning and syncing environment files / secrets across team members and CI machines just didn’t cut it for me. So, I set out to create my own solution — one finally checks all my boxes. So what is places-env? (I encourage you to check the readme https://github.com/marckrenn/places-env/tree/develop?tab=rea... over on GitHub – it will all make a lot more sense with the corresponding schematic.) - places-env is a self-contained, completely free open-source (FOSS) alternative to HashiCorp Vault, Infisical, dotenv-vault and sops. - Leverages a single source of truth (SSOT) places.yaml for deriving multiple environment files. - Similar to sops, places-env encrypts only the values in places.yaml, resulting in places.enc.yaml, which can be securely checked into git: - Congrats, your SSOT is now version-controlled - Always synchronized with collaborators - Fully in-sync with the rest of your code, branches and tags (try doing that with Infisical & co.) - Changes remain 'human-trackable' — even when values are encrypted - Contrary to sops, encryption keys can be assigned either per environment or on a per-value basis - Provides a straightforward setup with no dependency on external services or libraries. - places watch start (persistently) tracks changes in places.yaml / places.enc.yaml and automatically handles encryption, decryption, keeps .gitignore up-to-date, and auto-updates environment files. So it's essentially set and forget. If you’re intrigued, please also check out the readme’s FAQ section https://github.com/marckrenn/places-env/tree/develop?tab=rea.... Feedback, criticism, etc. is, of course, very welcome.
Does the same job
all alternatives →- IJI just fixed .env once and for all – better-envNov 2025 · better-env.dev · ▲8
.env files have always felt archaic, insecure, clunky and honestly just not fun to work with. I see my friends (and myself) accidentally committing them all the time. Managing secrets across projects becomes a mess of copy-pasting keys into scattered env files with no real way to sync anything. So I built better-env: a secure, developer-friendly alternative to .env. Store your secrets once in a global encrypted store, and load them per-project at runtime. I’d love feedback on whether this feels useful beyond solo devs, and what you’d want for teams or CI setups. Fully open source:…

- SVSimple version control for designers2011 · ▲55
Hi HN, I've been waiting to post what I've been working on for a few weeks now:) Today we're launching LayerVault, which is a version control system made for designers. The URL is http://www.layervault.com LayerVault keeps track of what you're working on without adding extra steps to your process. The app runs in your toolbar and tracks changes you make to your files. Basically — each time you create or modify a file you’re working on, LayerVault saves a copy. You can then login, flip through its versions, and download a version from a few weeks ago. It's pretty neat — and we’ve built some…
- IBI built Envs.AI – Free env variable manager for dev teams2025 · envs.ai · ▲6
Hi HN, I built Envs.AI, a free tool to solve the headache of managing environment variables across different environments and platforms. Envs.AI lets you store all your environment variables in one secure place and easily integrate them with Jenkins, Python, and other platforms in your tech stack. No more scattered .env files or sharing secrets through Slack messages. Some features: - Central repository for all env variables - Secure storage with proper access controls - Simple integration with CI/CD pipelines - Easy access via API for different languages and frameworks - Team…


More work this month
the category →


The app store for voice native apps that lives in your notch
Work · 28d ago · voiceos.com

The New Calendly▲211Handle all of the work before, during, and after meetings
Work · 17d ago · calendly.com