The open source security infrastructure platform that teams use for secrets, certificates, and privileged access management.

San Francisco, CA
Pinned Tweet
Rest in peace, .env. You served us well but you gotta go. Infisical fetches secrets at runtime so they never touch disk. CLI works with any language + SDKs and infra integrations. Docs below.
20
72
750
260,337
If your agents run in @daytonaio sandboxes, you can now manage their keys in Infisical alongside every other secret your team uses! Infisical now syncs copies of secrets straight into Daytona's secret store. Daytona keeps the real values out of the sandbox, and Infisical keeps the secret values current. Rotate a key in Infisical and every sandbox that references it gets the new value on the next sync, with no changes to your create calls. Available on all plans, including free!
4
9
23
2,252
let there be light
3
7
21
1,894
cmd + k
4
5
13
687
Infisical retweeted
Replying to @infisical
this has reduced our time to investigate incidents drastically! absolute game changer for granting access to privileged resources
1
4
156
You can now give someone access to production Redis without giving them the password! You put the password into Infisical once. After that, you decide who has access. Anyone with permission can open Redis from their browser or terminal without ever seeing the password. Infisical keeps logs for every command. Live in Infisical PAM today! If you haven't looked at Infisical for privileged access management yet, the list of supported account types is growing every week. Docs below 👇
6
9
19
1,351
like he said 👇
"How do you share .env files as a team?" I see this question all too often. The answer is "You don't". And you actually don't need a .env file at all! In this video I break down what environment variables are, what the environment really is, and how runtime injection with centralized secrets can help deliver env vars to the environment and solve the problem of secret sprawl. Ditch the .env file. There's a better way.
1
10
2,736
we took away the fly's .env file to see how it would react
2
9
15
1,447
Infisical retweeted
I pasted this API key into Claude and it told me to rotate it immediately. Is this supposed to make it harder to read or something?
3
5
27
687
Infisical retweeted
introducing Access Controls v2 in Infisical! you can now grant one-off access to a single folder or environment in just a few clicks without needing to create custom roles
7
14
65
9,817
Infisical retweeted
Most people know Infisical for secrets management but you can also use it for privileged access management (PAM) to access resources like databases too. This release is a step forward specifically in Infisical’s PAM account discovery functionality where we can help surface existing accounts.
New in Infisical: Postgres account discovery! Infisical PAM can now scan your Postgres instances and surface every account that can log in, including the ones no-one is tracking. Pick the accounts you want to bring under management, and rescan on a schedule to catch what changes. No network exposure: the scan runs through your Infisical Gateway. Live today on Enterprise. See it in action 👇
4
12
770
New in Infisical: Postgres account discovery! Infisical PAM can now scan your Postgres instances and surface every account that can log in, including the ones no-one is tracking. Pick the accounts you want to bring under management, and rescan on a schedule to catch what changes. No network exposure: the scan runs through your Infisical Gateway. Live today on Enterprise. See it in action 👇
5
10
27
2,169
You asked. We built it. The Infisical Community is live. Your place for Infisical discussions, feature requests, roadmap updates, announcements, and feedback. Come hang out → community.infisical.com/
2
7
16
2,265
Infisical retweeted
You can just issue ephemeral database credentials on demand with @infisical. Let's go.
Every developer should understand the difference between static credentials, secret rotation, and dynamic secrets. I made a quick explainer covering all three:
2
10
930
Infisical now writes your secrets into your Spacelift contexts! You choose an Infisical folder and the @spaceliftio context to write to. When a value changes in Infisical, Infisical updates the context, and every stack attached to it gets the new value on its next run, with support for environment variables or mounted files. Available on all plans.
4
10
21
1,603
friday morning docs revamp 😎
3
7
20
1,850