🔑

SecretVault

Bounded Egress Gateway & Credential Proxy

Sign In to Vault

Secret Management

Values are encrypted with AES-256-GCM. Human reveals require step-up authentication.

Name Environment Masked Preview Created Actions

Registered Client Applications

Scoped linking keys (sv_...) for Claude Code, mobile clients, and CI/CD pipelines.

App Name Key Prefix Scopes Last Used Actions

Service Profiles (Credential Proxy)

Maps reverse proxy routes (/proxy/:service/*) to upstream target URLs and secret credentials.

Service Name Target URL Auth Method Mapped Secret Actions

🔌 Integrations

Connect AI agents, editors, and SDKs. Snippets use this server's real origin and a placeholder linking key.

Create a scoped client in Clients to obtain a real sv_… linking key, then replace <YOUR_LINKING_KEY> below.

🔑 Hardware Passkeys (WebAuthn)

Use Touch ID, Face ID, Windows Hello, or YubiKey hardware security tokens for 1-tap step-up auth.

Device Name Last Used Action
No passkeys registered yet. Click Add Passkey above.

📱 Authenticator 2FA (TOTP)

Not Configured

Authenticator app 2FA (Google Authenticator, Authy, 1Password) for step-up authentication.