/ Search - type / Modes - type M Star on GitHub - 5.7k

For security teams

ARMOR⛨

Turn your keys into Armored Keys ⛨. Move them off device–and more.

Features

  • Harden keys by moving them off device dotenvx armor up
  • Share access with your team—not the private key Team Members
  • Require human approval before decrypt Settings › Guard
  • Decrypt from a software enclave Settings › Enclave
  • Audit every decrypt Audit Logs
  • Control everything from the API dotenvx curl

In use by

Worldwide Usage

FAQ

  • Can I move private keys off device? Yes
  • Can I share access with my team—not the private key? Yes
  • Can I require human approval before decrypt? Yes
  • Can I decrypt from a software enclave? Yes
  • Can I audit every decrypt? Yes
  • Can I control everything from the API? Yes
  • Is Dotenvx free and open source? Yes
  • Is Dotenvx Armor paid? Yes
  • Does Dotenvx Armor have a 14-day free trial? Yes
  • Is it safe to commit an encrypted .env file? Yes
  • Are armored keys unlimited on every plan? Yes
  • Can I still decrypt if I exceed included audit events? Yes
  • Does Armor record who accessed what, and when? Yes
  • Do secrets stay protected if the encrypted file is exposed? Yes

Once the private key isn't on the machine, encrypted .env finally feels finished. That's Armor.

Sign Up Free ›