🔑

SecretVault

Bounded Egress Gateway & Credential Proxy

Sign In to Vault

Secret Management

Values are encrypted with AES-256-GCM. Human reveals require step-up authentication.

Name Environment Masked Preview Created Actions

Registered Client Applications

Scoped linking keys (sv_...) for Claude Code, mobile clients, and CI/CD pipelines.

App Name Key Prefix Scopes Last Used Actions

Service Profiles (Credential Proxy)

Maps reverse proxy routes (/proxy/:service/*) to upstream target URLs and secret credentials.

Service Name Target URL Auth Method Mapped Secret Actions

📚 Client Integration Guide

Connect AI Agents, Claude Code, VS Code, and SDKs directly to SecretVault.

Active Linking Key:

🤖 Claude Code CLI

Streamable HTTP

Terminal command to add SecretVault to Claude Code:

claude mcp add secretvault http://localhost:3004/mcp --header "Authorization: Bearer "

🚀 Antigravity & Agentic MCP Clients

JSON Config

Agentic tool configuration JSON:

💻 VS Code & Claude Desktop

claude_desktop_config.json

Desktop client config snippet:

🔌 @secretvault/client

TypeScript / Node.js

Zero-knowledge application proxy fetch:

Total Users

-

Total Secrets

-

Client Applications

-

Audit Trail Events

-

🛡️

Admin Privacy Boundary & Data-Plane Isolation

Administrators can manage user lifecycle and reset credentials, but are strictly barred from viewing user secret values, previews, tags, or client linking keys.

👥 Registered Users

Username Role Passkey (WebAuthn) Authenticator (TOTP) Created Date Actions
Loading users...