Best Secrets Management tools by public signals

These picks are computed from scored public evidence. Use the openness column in the ranking to separate OSI-approved, source-available, open-core, proprietary, and unverified-license tools.

Use Case Rankings

Ordered by ToolVitals score, health, shipping, confidence, and then adoption as a tie-breaker.

# Tool Health Shipping Openness Stars Score Status
01 Infisical
Infisical is the open-source platform for secrets, certificates, and privileged access management.
93 100 OSI-approved OSS 27.3k 97 Active
02 OneCLI
Open-source credential vault for AI agents.
91 100 OSI-approved OSS 2.3k 96 Active
03 Phase
Application secrets and configuration management for developers.
90 95 OSI-approved OSS 868 94 Active
04 SecretZero
Git-native secrets-as-code platform.
81 84 OSI-approved OSS 6 87 Active
05 OpenBao Operator
Kubernetes operator for managing OpenBao clusters and secrets infrastructure.
80 90 OSI-approved OSS 17 86 Active
06 lopper
measure dependency waste and attack surface before it ships
76 89 OSI-approved OSS 2 84 Active
07 Relic
Encrypted secrets manager for sharing sensitive data.
76 67 OSI-approved OSS 174 79 Active
08 Zexio ZMS
High-performance secrets management system.
56 51 License unknown 0 66 Warning
09 Arcan
Open-source secrets management platform.
44 24 OSI-approved OSS 0 50 Critical
10 EnvSecrets
Open-source, end-to-end encrypted CLI-first management of your environment secrets.
31 0 OSI-approved OSS 96 33 Critical
11 Envie
Self-hostable secrets manager and .env replacement.
28 0 OSI-approved OSS 127 28 Critical