PROFESSIONAL SECURITY

ARMORED KEYS ⛨

Private keys. Off device. Under guard.

Armor up in one command.

One command to harden your private keys.

$ dotenvx armor up
⛨ armored (03C 969)

Keys move off-device.

No longer in .env.keys. Harder to leak. Harder to steal.

Grant decryption, not possession.

Private keys are retrieved only when an authorized workflow needs them. They are used in memory, then gone. Developers, CI, and agents can decrypt without keeping long-lived private keys on disk.

Grant this decryption?

Command
dotenvx run -- npm start
Location
Near San Francisco, California, United States
Device
MAC_OS_X

Armored keys.
Under guard.