[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"project-3629":3},{"id":4,"name":5,"fullName":6,"owner":7,"repo":5,"description":8,"homepage":9,"htmlUrl":10,"language":11,"languages":10,"totalLinesOfCode":10,"stars":12,"forks":13,"watchers":14,"openIssues":15,"contributorsCount":16,"subscribersCount":16,"size":16,"stars1d":17,"stars7d":18,"stars30d":19,"stars90d":16,"forks30d":16,"starsTrendScore":20,"compositeScore":21,"rankGlobal":10,"rankLanguage":10,"license":22,"archived":23,"fork":23,"defaultBranch":24,"hasWiki":25,"hasPages":23,"topics":26,"createdAt":10,"pushedAt":10,"updatedAt":47,"readmeContent":48,"aiSummary":49,"trendingCount":16,"starSnapshotCount":16,"syncStatus":50,"lastSyncTime":51,"discoverSource":52},3629,"infisical","Infisical\u002Finfisical","Infisical","Infisical is the open-source platform for secrets, certificates, and privileged access management.","https:\u002F\u002Finfisical.com",null,"TypeScript",27308,1962,66,253,0,16,101,562,77,44.88,"Other",false,"main",true,[27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46],"acme","certificate-management","cli","environment-variables","go","golang","node-js","open-source","pki","postgres","private-ca","secret-management","secret-manager","secret-scanning","secrets","secrets-management","security","security-tools","typescript","vault","2026-06-12 02:00:51","\u003Ch1 align=\"center\">\n  \u003Cimg width=\"300\" src=\"\u002Fimg\u002Flogoname-white.svg#gh-dark-mode-only\" alt=\"infisical\">\n\u003C\u002Fh1>\n\u003Cp align=\"center\">\n  \u003Cp align=\"center\">\u003Cb>The open-source secret management platform\u003C\u002Fb>: Sync secrets\u002Fconfigs across your team\u002Finfrastructure and prevent secret leaks.\u003C\u002Fp>\n\u003C\u002Fp>\n\n\u003Ch4 align=\"center\">\n  \u003Ca href=\"https:\u002F\u002Finfisical.com\u002Fslack\">Slack\u003C\u002Fa> |\n  \u003Ca href=\"https:\u002F\u002Finfisical.com\u002F\">Infisical Cloud\u003C\u002Fa> |\n  \u003Ca href=\"https:\u002F\u002Finfisical.com\u002Fdocs\u002Fself-hosting\u002Foverview\">Self-Hosting\u003C\u002Fa> |\n  \u003Ca href=\"https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fgetting-started\u002Fintroduction\">Docs\u003C\u002Fa> |\n  \u003Ca href=\"https:\u002F\u002Fwww.infisical.com\">Website\u003C\u002Fa> |\n  \u003Ca href=\"https:\u002F\u002Finfisical.com\u002Fcareers\">Hiring (Remote\u002FSF)\u003C\u002Fa>\n\u003C\u002Fh4>\n\n\u003Ch4 align=\"center\">\n  \u003Ca href=\"https:\u002F\u002Fgithub.com\u002FInfisical\u002Finfisical\u002Fblob\u002Fmain\u002FLICENSE\">\n    \u003Cimg src=\"https:\u002F\u002Fimg.shields.io\u002Fbadge\u002Flicense-MIT-blue.svg\" alt=\"Infisical is released under the MIT license.\" \u002F>\n  \u003C\u002Fa>\n  \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Finfisical\u002Finfisical\u002Fblob\u002Fmain\u002FCONTRIBUTING.md\">\n    \u003Cimg src=\"https:\u002F\u002Fimg.shields.io\u002Fbadge\u002FPRs-Welcome-brightgreen\" alt=\"PRs welcome!\" \u002F>\n  \u003C\u002Fa>\n  \u003Ca href=\"https:\u002F\u002Fgithub.com\u002FInfisical\u002Finfisical\u002Fissues\">\n    \u003Cimg src=\"https:\u002F\u002Fimg.shields.io\u002Fgithub\u002Fcommit-activity\u002Fm\u002Finfisical\u002Finfisical\" alt=\"git commit activity\" \u002F>\n  \u003C\u002Fa>\n  \u003Ca href=\"https:\u002F\u002Fcloudsmith.io\u002F~infisical\u002Frepos\u002F\">\n    \u003Cimg src=\"https:\u002F\u002Fimg.shields.io\u002Fbadge\u002FDownloads-6.95M-orange\" alt=\"Cloudsmith downloads\" \u002F>\n  \u003C\u002Fa>\n  \u003Ca href=\"https:\u002F\u002Finfisical.com\u002Fslack\">\n    \u003Cimg src=\"https:\u002F\u002Fimg.shields.io\u002Fbadge\u002Fchat-on%20Slack-blueviolet\" alt=\"Slack community channel\" \u002F>\n  \u003C\u002Fa>\n  \u003Ca href=\"https:\u002F\u002Ftwitter.com\u002Finfisical\">\n    \u003Cimg src=\"https:\u002F\u002Fimg.shields.io\u002Ftwitter\u002Ffollow\u002Finfisical?label=Follow\" alt=\"Infisical Twitter\" \u002F>\n  \u003C\u002Fa>\n\u003C\u002Fh4>\n\n\u003Cimg src=\"\u002Fimg\u002Finfisical_github_repo2.png\" width=\"100%\" alt=\"Dashboard\" \u002F>\n\n## Introduction\n\n**[Infisical](https:\u002F\u002Finfisical.com)** is the open source secret management platform that teams use to centralize their application configuration and secrets like API keys and database credentials as well as manage their internal PKI.\n\nWe're on a mission to make security tooling more accessible to everyone, not just security teams, and that means redesigning the entire developer experience from ground up.\n\n## Features\n\n### Secrets Management:\n\n- **[Dashboard](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fproject)**: Manage secrets across projects and environments (e.g. development, production, etc.) through a user-friendly interface.\n- **[Secret Syncs](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fintegrations\u002Fsecret-syncs\u002Foverview)**: Sync secrets to platforms like [GitHub](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fintegrations\u002Fcicd\u002Fgithubactions), [Vercel](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fintegrations\u002Fcloud\u002Fvercel), [AWS](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fintegrations\u002Fcloud\u002Faws-secret-manager), and use tools like [Terraform](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fintegrations\u002Fframeworks\u002Fterraform), [Ansible](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fintegrations\u002Fplatforms\u002Fansible), and more.\n- **[Secret versioning](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fsecret-versioning)** and **[Point-in-Time Recovery](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpit-recovery)**: Keep track of every secret and project state; roll back when needed.\n- **[Secret Rotation](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fsecret-rotation\u002Foverview)**: Rotate secrets at regular intervals for services like [PostgreSQL](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fsecret-rotation\u002Fpostgres-credentials), [MySQL](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fsecret-rotation\u002Fmysql), [AWS IAM](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fsecret-rotation\u002Faws-iam), and more.\n- **[Dynamic Secrets](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fdynamic-secrets\u002Foverview)**: Generate ephemeral secrets on-demand for services like [PostgreSQL](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fdynamic-secrets\u002Fpostgresql), [MySQL](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fdynamic-secrets\u002Fmysql), [RabbitMQ](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fdynamic-secrets\u002Frabbit-mq), and more.\n- **[Secret Scanning and Leak Prevention](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fcli\u002Fscanning-overview)**: Prevent secrets from leaking to git.\n- **[Infisical Kubernetes Operator](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fgetting-started\u002Fkubernetes)**: Deliver secrets to your Kubernetes workloads and automatically reload deployments.\n- **[Infisical Agent](https:\u002F\u002Finfisical.com\u002Fdocs\u002Finfisical-agent\u002Foverview)**: Inject secrets into applications without modifying any code logic.\n\n### Certificate Management\n\n- **[Internal CA](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpki\u002Fprivate-ca)**: Create and manage a private\n  CA hierarchy directly within Infisical.\n- **[External CA](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpki\u002Fca\u002Fexternal-ca)**: Integrate with third-party certificate authorities such as Let’s Encrypt, DigiCert, Microsoft AD CS, and more to leverage existing PKI infrastructure\n  or issue publicly trusted certificates.\n- **[Certificate Lifecycle Management](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpki\u002Fcertificates\u002Foverview)**: Create certificate [profiles](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpki\u002Fcertificates\u002Fprofiles) and [policies](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpki\u002Fcertificates\u002Fpolicies) to control how certificates are issued, including [enrollment methods](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpki\u002Fenrollment-methods\u002Foverview) such as API, ACME, or EST. Manage the full lifecycle from issuance to renewal and [revocation](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpki\u002Fcertificates\u002Fcertificates#guide-to-revoking-certificates) with CRL and inventory tracking.\n- **[Certificate Syncs](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpki\u002Fcertificate-syncs\u002Foverview)**: Sync certificates to external platforms like [AWS Certificate Manager](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpki\u002Fcertificate-syncs\u002Faws-certificate-manager) and [Azure Key Vault](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpki\u002Fcertificate-syncs\u002Fazure-key-vault).\n- **[Alerting](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpki\u002Falerting)**: Configure alerting for expiring CA and end-entity certificates.\n\n### Infisical Key Management System (KMS):\n\n- **[Cryptographic Keys](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fkms)**: Centrally manage keys across projects through a user-friendly interface or via the API.\n- **[Encrypt and Decrypt Data](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fkms#guide-to-encrypting-data)**: Use symmetric keys to encrypt and decrypt data.\n\n### Infisical SSH\n\n- **[Signed SSH Certificates](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fssh)**: Issue ephemeral SSH credentials for secure, short-lived, and centralized access to infrastructure.\n\n### General Platform:\n\n- **Authentication Methods**: Authenticate machine identities with Infisical using a cloud-native or platform agnostic authentication method ([Kubernetes Auth](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fidentities\u002Fkubernetes-auth), [GCP Auth](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fidentities\u002Fgcp-auth), [Azure Auth](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fidentities\u002Fazure-auth), [AWS Auth](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fidentities\u002Faws-auth), [OIDC Auth](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fidentities\u002Foidc-auth\u002Fgeneral), [Universal Auth](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fidentities\u002Funiversal-auth)).\n- **[Access Controls](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Faccess-controls\u002Foverview)**: Define advanced authorization controls for users and machine identities with [RBAC](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Faccess-controls\u002Frole-based-access-controls), [additional privileges](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Faccess-controls\u002Fadditional-privileges), [temporary access](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Faccess-controls\u002Ftemporary-access), [access requests](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Faccess-controls\u002Faccess-requests), [approval workflows](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Fpr-workflows), and more.\n- **[Audit logs](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fplatform\u002Faudit-logs)**: Track every action taken on the platform.\n- **[Self-hosting](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fself-hosting\u002Foverview)**: Deploy Infisical on-prem or cloud with ease; keep data on your own infrastructure.\n- **[Infisical SDK](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fsdks\u002Foverview)**: Interact with Infisical via client SDKs ([Node](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fsdks\u002Flanguages\u002Fnode), [Python](https:\u002F\u002Fgithub.com\u002FInfisical\u002Fpython-sdk-official?tab=readme-ov-file#infisical-python-sdk), [Go](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fsdks\u002Flanguages\u002Fgo), [Ruby](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fsdks\u002Flanguages\u002Fruby), [Java](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fsdks\u002Flanguages\u002Fjava), [.NET](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fsdks\u002Flanguages\u002Fcsharp))\n- **[Infisical CLI](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fcli\u002Foverview)**: Interact with Infisical via CLI; useful for injecting secrets into local development and CI\u002FCD pipelines.\n- **[Infisical API](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fapi-reference\u002Foverview\u002Fintroduction)**: Interact with Infisical via API.\n\n## Getting started\n\nCheck out the [Quickstart Guides](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fdocumentation\u002Fgetting-started\u002Foverview)\n\n| Use Infisical Cloud                                                                                                                                     | Deploy Infisical on premise                                                          |\n| ------------------------------------------------------------------------------------------------------------------------------------------------------- | ------------------------------------------------------------------------------------ |\n| The fastest and most reliable way to \u003Cbr> get started with Infisical is signing up \u003Cbr> for free to [Infisical Cloud](https:\u002F\u002Fapp.infisical.com\u002Flogin). | \u003Cbr> View all [deployment options](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fself-hosting\u002Foverview) |\n\n### Run Infisical locally\n\nTo set up and run Infisical locally, make sure you have [Git](https:\u002F\u002Fgit-scm.com\u002Fdownloads) and [Docker](https:\u002F\u002Fwww.docker.com\u002Fget-started\u002F) installed on your system.\n\n**Linux\u002FmacOS:**\n```console\ngit clone https:\u002F\u002Fgithub.com\u002FInfisical\u002Finfisical && cd \"$(basename $_ .git)\" && cp .env.example .env && docker compose -f docker-compose.prod.yml up\n```\n\n**Windows (Command Prompt):**\n```console\ngit clone https:\u002F\u002Fgithub.com\u002FInfisical\u002Finfisical && cd infisical && copy .env.example .env && docker compose -f docker-compose.prod.yml up\n```\n\nOnce running, create an account at [http:\u002F\u002Flocalhost:80](http:\u002F\u002Flocalhost:80).\n\n> **Contributing?** Check out our guide to see how to [get started](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fcontributing\u002Fgetting-started).\n\n### Scan and prevent secret leaks\n\nOn top managing secrets with Infisical, you can also [scan for over 140+ secret types]() in your files, directories and git repositories.\n\nTo scan your full git history, run:\n\n```\ninfisical scan --verbose\n```\n\nInstall pre commit hook to scan each commit before you push to your repository\n\n```\ninfisical scan install --pre-commit-hook\n```\n\nLearn about Infisical's code scanning feature [here](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fcli\u002Fscanning-overview)\n\n## Open-source vs. paid\n\nThis repo available under the [MIT expat license](https:\u002F\u002Fgithub.com\u002FInfisical\u002Finfisical\u002Fblob\u002Fmain\u002FLICENSE), with the exception of the `ee` directory which will contain premium enterprise features requiring a Infisical license.\n\nIf you are interested in managed Infisical Cloud of self-hosted Enterprise Offering, take a look at [our website](https:\u002F\u002Finfisical.com\u002F) or [book a meeting with us](https:\u002F\u002Finfisical.cal.com\u002Fvlad\u002Finfisical-demo).\n\n## Security\n\nPlease do not file GitHub issues or post on our public forum for security vulnerabilities, as they are public!\n\nInfisical takes security issues very seriously. If you have any concerns about Infisical or believe you have uncovered a vulnerability, please get in touch via the e-mail address security@infisical.com. In the message, try to provide a description of the issue and ideally a way of reproducing it. The security team will get back to you as soon as possible.\n\nNote that this security address should be used only for undisclosed vulnerabilities. Please report any security problems to us before disclosing it publicly.\n\n## Contributing\n\nWhether it's big or small, we love contributions. Check out our guide to see how to [get started](https:\u002F\u002Finfisical.com\u002Fdocs\u002Fcontributing\u002Fgetting-started).\n\nNot sure where to get started? You can:\n\n- Join our \u003Ca href=\"https:\u002F\u002Finfisical.com\u002Fslack\">Slack\u003C\u002Fa>, and ask us any questions there.\n\n## We are hiring!\n\nIf you're reading this, there is a strong chance you like the products we created.\n\nYou might also make a great addition to our team. We're growing fast and would love for you to [join us](https:\u002F\u002Finfisical.com\u002Fcareers).\n","Infisical 是一个开源的秘密管理平台，用于管理和同步团队及基础设施中的密钥、证书和特权访问。其核心功能包括通过用户友好的界面在不同项目和环境中管理密钥，支持与GitHub、Vercel、AWS等平台的密钥同步，并提供多种工具如Terraform、Ansible的集成。此外，它还支持私有CA管理和内部PKI。Infisical适用于需要安全存储和管理敏感信息的各种开发场景，特别是对于那些希望提高安全性同时简化开发者体验的团队来说非常有用。",2,"2026-06-11 02:55:07","top_language"]