HCP Vault Secrets extends secret sync capabilities to GitHub Actions secrets, improves secret versioning, and adds a tutorial on using HCP Vault Secrets with Terraform.
At HashiDays earlier this year, we launched the public beta for a new offering on the HashiCorp Cloud Platform: HCP Vault Secrets. HCP Vault Secrets is a new Software-as-a-Service (SaaS) offering of HashiCorp Vault that focuses primarily on secrets management, enables users to onboard quickly, and is free to get started.
Since then, we have been working on various improvements and additions to HCP Vault Secrets. These updates are aligned with our core product principles focusing on secrets management for developers across three key areas: centralizing secrets, syncing secrets, and developer flexibility. These additions will help our users to:
With secrets sync, users can continually synchronize secrets from HCP Vault Secrets when and where they need them. At launch, users could leverage this feature for AWS Secrets Manager. Today, we are pleased to announce that we have added secrets sync for GitHub Actions.
Secrets sync with GitHub Actions
Currently, secrets in GitHub Actions do not have secret versioning, which can cause an influx of secret sprawl for users. GitHub stores secrets on a per-repository basis, which sometimes results in duplicate secrets created across multiple repositories. Oftentimes, inconsistencies between environments can emerge if secret values in CI (specifically GitHub Actions) and in a deployment environment are different.
By centrally managing secrets in HCP Vault Secrets and enabling syncing to GitHub, developers can enable access to secrets within GitHub Actions. HCP Vault Secrets gives users improved secrets versioning and access control setup and can ensure secrets are synced across multiple repositories.
HCP Vault Secrets is fully managed by HashiCorp and available on the HashiCorp Cloud Platform (HCP). With HCP Vault Secrets, users can sync their first secret in minutes. Sign up for free today.
Learn about the ACME protocol for PKI, the common problems it solves, and why it should be part of your certificate management roadmap.
New HashiCorp Vault ecosystem integrations extend security use cases for customers.
With Vault and Boundary, HashiCorp makes its debut in Gartner’s Magic Quadrant for privileged access management.