Skip to content

♾ Infisical is the open-source secret management platform: Sync secrets across your team/infrastructure, prevent secret leaks, and manage internal PKI

License

Notifications You must be signed in to change notification settings

Infisical/infisical

This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.

Folders and files

NameName
Last commit message
Last commit date
Nov 12, 2024
Nov 20, 2024
Dec 29, 2024
Dec 19, 2024
Aug 25, 2023
Nov 27, 2024
May 2, 2024
Dec 28, 2024
Jan 4, 2025
Jan 4, 2025
Dec 18, 2024
Oct 4, 2023
Dec 18, 2024
Jul 2, 2024
Oct 9, 2024
Nov 20, 2024
Apr 22, 2024
Oct 17, 2023
Dec 17, 2024
Oct 2, 2024
Feb 19, 2024
Jan 23, 2023
Nov 12, 2024
Mar 7, 2024
Nov 11, 2024
Nov 17, 2022
Feb 25, 2024
Dec 18, 2024
Dec 18, 2024
Nov 20, 2022
Nov 19, 2024
Dec 11, 2024
Apr 29, 2023
Oct 21, 2023
Jun 25, 2024
Nov 19, 2024
Nov 15, 2024
Jun 11, 2024
Dec 29, 2024
Dec 29, 2024
Nov 19, 2024
May 20, 2023
Sep 11, 2024

Repository files navigation

infisical

The open-source secret management platform: Sync secrets/configs across your team/infrastructure and prevent secret leaks.

Dashboard

Introduction

Infisical is the open source secret management platform that teams use to centralize their application configuration and secrets like API keys and database credentials as well as manage their internal PKI.

We're on a mission to make security tooling more accessible to everyone, not just security teams, and that means redesigning the entire developer experience from ground up.

Features

Secrets Management:

Internal PKI:

Key Management (KMS):

General Platform:

Getting started

Check out the Quickstart Guides

Use Infisical Cloud Deploy Infisical on premise
The fastest and most reliable way to
get started with Infisical is signing up
for free to Infisical Cloud.

View all deployment options

Run Infisical locally

To set up and run Infisical locally, make sure you have Git and Docker installed on your system. Then run the command for your system:

Linux/macOS:

git clone https://github.com/Infisical/infisical && cd "$(basename $_ .git)" && cp .env.example .env && docker compose -f docker-compose.prod.yml up

Windows Command Prompt:

git clone https://github.com/Infisical/infisical && cd infisical && copy .env.example .env && docker compose -f docker-compose.prod.yml up

Create an account at http://localhost:80

Scan and prevent secret leaks

On top managing secrets with Infisical, you can also scan for over 140+ secret types in your files, directories and git repositories.

To scan your full git history, run:

infisical scan --verbose

Install pre commit hook to scan each commit before you push to your repository

infisical scan install --pre-commit-hook

Lean about Infisical's code scanning feature here

Open-source vs. paid

This repo available under the MIT expat license, with the exception of the ee directory which will contain premium enterprise features requiring a Infisical license.

If you are interested in managed Infisical Cloud of self-hosted Enterprise Offering, take a look at our website or book a meeting with us.

Security

Please do not file GitHub issues or post on our public forum for security vulnerabilities, as they are public!

Infisical takes security issues very seriously. If you have any concerns about Infisical or believe you have uncovered a vulnerability, please get in touch via the e-mail address [email protected]. In the message, try to provide a description of the issue and ideally a way of reproducing it. The security team will get back to you as soon as possible.

Note that this security address should be used only for undisclosed vulnerabilities. Please report any security problems to us before disclosing it publicly.

Contributing

Whether it's big or small, we love contributions. Check out our guide to see how to get started.

Not sure where to get started? You can:

  • Join our Slack, and ask us any questions there.

Resources

  • Docs for comprehensive documentation and guides
  • Slack for discussion with the community and Infisical team.
  • GitHub for code, issues, and pull requests
  • Twitter for fast news
  • YouTube for videos on secret management
  • Blog for secret management insights, articles, tutorials, and updates