forest6511/secretctl
The simplest AI-ready secrets manager. Local-first, single-binary CLI & Desktop app with MCP integration. Never expose secrets to AI agents.
It encrypts secrets at rest using AES-256-GCM with Argon2id key derivation, storing them in SQLite. The tool allows injection of secrets as environment variables into arbitrary commands, automatically sanitizing command output to prevent leakage. It integrates with MCP servers to mediate AI agent command execution, ensuring agents receive only sanitized results and never plaintext credentials.
Stars
3
Forks
2
Language
Go
License
Apache-2.0
Category
Last pushed
Jan 22, 2026
Commits (30d)
0
Get this data via API
curl "https://pt-edge.onrender.com/api/v1/quality/agents/forest6511/secretctl"
Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.
Higher-rated alternatives
quantifylabs/aegis-memory
Secure context engineering for AI agents. Content security · integrity verification · trust...
kahalewai/dual-auth
Dual-Auth provides AGBAC dual-subject Authorization for AI Agents and Humans using existing IAM...
The-17/agentsecrets
Zero-knowledge secrets infrastructure built for AI agents to operate, not just consume.
lelu-auth/lelu
The authorization layer for AI Agents
onecli/onecli
Open-source credential vault, give your AI agents access to services without exposing keys.