Skip to content

TinyVault

TinyVault keeps secrets: API keys, passwords and other values your processes and services need. Each tenant has its own store; values are versioned, encrypted under a root key you control, and handed only to the products, services and people allowed to read them. It can also read secrets from a secret manager you already run (HashiCorp Vault, AWS, Azure, Google Cloud), without copying them. Every read and change is recorded, without the value.

Documentation: coming.

Released: not yet; its first release, 0.1.0, is coming. See Release status.

Is used by TinyConductor and the connector runtime (Connections)
Signs people in through the platform’s identity provider, or its own users when there is none
Encryption key to back up its root key file, unless you use a cloud key service (Backups)
Chart oci://registry.tinyfactory.ai/tinyblox/charts/tinyvault