11/12 free views
Tool
CLI
Identity & Access Management (IAM)

infisical

by Infisical

24.5Kstars
1.7Kforks
60watchers
Updated about 2 months ago
About

Infisical is an open-source platform that centralizes and securely manages secrets, PKI, and SSH access across teams and infrastructure.

Infisical is the open-source platform for secrets, certificates, and privileged access management.

Primary Use Case

Infisical is designed for development and security teams who need to securely store, manage, and synchronize secrets like API keys, database credentials, and certificates across multiple projects and environments. It simplifies secret versioning, rotation, and dynamic secret generation, enabling safer and more efficient access management in both cloud and self-hosted setups.

Key Features
  • Centralized secrets management with a user-friendly dashboard
  • Native integrations with platforms like GitHub, Vercel, AWS, Terraform, and Ansible
  • Secret versioning and point-in-time recovery for audit and rollback
  • Automated secret rotation for databases and cloud IAM services
  • Dynamic secrets generation for ephemeral credentials
  • Support for managing internal PKI and SSH access
  • Open-source with MIT license and active community support

Installation

  • Visit https://infisical.com/docs/self-hosting/overview for self-hosting setup instructions
  • Clone the repository from GitHub: git clone https://github.com/Infisical/infisical.git
  • Follow platform-specific integration guides for GitHub Actions, Vercel, AWS, Terraform, and Ansible
  • Refer to the documentation for dashboard setup and secret management workflows

Usage

>_ infisical sync

Synchronize secrets from Infisical to your local environment or CI/CD pipeline

>_ infisical login

Authenticate and connect your local CLI with the Infisical platform

>_ infisical rotate

Trigger secret rotation for supported services like PostgreSQL, MySQL, and AWS IAM

Security Frameworks
Credential Access
Defense Evasion
Initial Access
Persistence
Privilege Escalation
Usage Insights
  • Integrate Infisical with CI/CD pipelines to automate secret rotation and reduce risk of leaked credentials.
  • Use dynamic secrets generation to limit the lifespan of credentials, minimizing attack surface during red team exercises.
  • Leverage Infisical's PKI and SSH management to enforce least privilege and improve access auditing for blue teams.
  • Combine Infisical with SIEM tools to detect anomalous secret access patterns for enhanced detection capabilities.
  • Encourage purple teams to simulate credential theft and misuse scenarios using Infisical-managed secrets to validate controls.

Docs Take 2 Hours. AI Takes 10 Seconds.

Ask anything about infisical. Installation? Config? Troubleshooting? Get answers trained on real docs and GitHub issues—not generic ChatGPT fluff.

3 free chats per tool • Instant responses • No credit card

Security Profile
Red Team60%
Blue Team80%
Purple Team70%
Details
LicenseOther
LanguageTypeScript
Open Issues1106
Topics
cli
environment-variables
secret-management
secrets
security
open-source
golang
typescript
secret-manager
go