Skip to content

Anzen

Anzen is a CLI which helps manage secrets in software projects and devshells. Instead of exposing all your secrets in a .env file, this will dynamically fetch them from any supported secrets provider and do much more.

Features

  • Multiple Providers: gopass, keychain and more to come (MRs welcome ;P)
  • Trust Mechanism: to prevent accidental secrets exposure, Anzen requires the user to explicitly trust the config file (like direnv)
  • Multiple Environments: use different environments to get different secrets from the providers
  • Groups: to group secrets together and prevent exposing more secrets than really needed to processes etc.
  • Dynamic Generation: define commands to automatically generate secrets and save them in a provider

Quick Start

  1. Initialize a new project:

    anzen init
    
  2. Set your first secret:

    anzen set API_KEY
    # You'll be prompted to enter the secret value
    
  3. Get a secret:

    anzen get API_KEY
    
  4. Run a command with secrets loaded:

    anzen run -- your-command-here