Phase
p/phase-5
Encryption for app developers
Nimish K
Phase โ€” Open source application secrets manager
Featured
47
โ€ข
Open source platform for fast-moving engineering teams to secure and deploy application secrets โ€” from development to production.
Replies
Nimish K
Maker
๐Ÿ“Œ
Hey Product Hunt ๐Ÿ‘‹, We're super excited to launch the new and improved Phase! ๐Ÿ”ฅ๐Ÿ”ฅ Phase is an easy-to-use application secrets manager for developers. Instead of hard-coding secrets into your code or using .env files and sharing them over Slack. ๐Ÿ“ฉ Simply import your existing secrets into Phase via the CLI by running: phase secrets import .env ๐Ÿš€ Then inject them into your application at runtime by running: phase run node index.js ๐Ÿ”„ This keeps your secrets secure and always in sync with your teammates across dev, staging, and prod environments. ๐Ÿ—๏ธ Phase also integrates with other tools and services you may be using, such as GitHub, Docker, Kubernetes, and AWS. Phase will automatically deploy your secrets and configs to these services, giving you a single source of truth across your team and infrastructure. ๐Ÿ” We take the complexity out of securing your secrets by using end-to-end encryption, audit logging, role-based access policies, and IP whitelisting. ๐Ÿ‘ฉโ€๐Ÿ’ป We believe in shifting security left and providing an uncompromised, seamless developer experience โ€” something we found lacking in existing tools like HashiCorp Vault or AWS Secrets Manager. We're excited for all of you to try it! โค๏ธ Check out our GitHub: https://github.com/phasehq/console Join our Slack community: https://slack.phase.dev
Christofer Huber
Hey @nimishk, this is a great tool. When you work with a distributed team it is always a real pain to share secrets and credentials. I also love the fact that you offer a self-hosted version. Especially in Europe a lot of companies insist on hosting on premise ๐Ÿ˜… Congrats on the launch! ๐Ÿš€
Jerric Lyns John
what's different about this from Infisical
Nimish K
Hey @jerriclynsjohn ๐Ÿ‘‹ Infisical is great. I think you will find a significant improvement in DX with Phase, as well as a more thorough and considered approach to the security model. We also have a wider vision of application security that we want to expand into beyond just application secrets!
Micha Cassola
I would love something like this for SSH keys. Maybe with local encryption and decryption on demand with some other key, like a smart card or something like that.
Rohan Chaturvedi
@michacassola that's a great suggestion and one we have been thinking about as well! Stay tuned!
Maxime Dolores
any differentiating feature from infisical?
Rohan Chaturvedi
Hey @m_dolr ๐Ÿ‘‹ We have focused primarily on developer experience and reducing friction to let developers focus on what they do best: build and ship code! Phase is security-focused developer tool, but we believe that developer tools should ease developer productivity first and foremost, and that this will inherently drive adoption and improve security in an organization. We've also built Phase on a sophisticated end-to-end encryption architecture that we have built from the ground up for the unique requirements of secrets management in teams of all sizes. You can find out more about that on our docs: https://docs.phase.dev/security/...
Maxime Dolores
@rohan_chaturvedi what would be a reason to switch from infisical to phase ?
Ali Eskandari
worked with many open source clients and this is is def something they would love. Congrats on the launch!
AwesomeYang
Congratulations @nimishk on launching Phase! This looks like a game changer for managing application secrets. The end-to-end encryption and seamless integrations with tools like GitHub and AWS will definitely help teams streamline their workflows. Excited to try it out! ๐Ÿš€
Bon
upvoted for open-source.
Tiger L
Looks great. Your focus on simplifying the process and enhancing security truly addresses a key pain point. Wishing you success with this launch!
Matej Bendรญk
Congrats on the launch! The tool looks pretty useful.
Kushal Shrestha
๐ŸŒŸ Congratulations on launching the new and improved Phase! ๐Ÿ”ฅ ๐Ÿ” Phase is a crucial tool for securely managing and deploying application secrets. Importing secrets via CLI and injecting them at runtime ensures security and synchronization across environments. How does Phase handle integrations with tools like GitHub, Docker, and Kubernetes while maintaining a single source of truth? ๐Ÿ—๏ธ Integration with services like AWS, alongside seamless developer experience, is impressive. How do Phase's end-to-end encryption and role-based access policies work together to keep secrets secure? ๐Ÿ› ๏ธ Automated deployment of secrets and configs is a great feature. How does Phase ensure consistent and reliable deployments across different stages of development? Looking forward to seeing how Phase enhances security and efficiency for engineering teams. Great work! ๐ŸŽ‰ @nimishk @rohan_chaturvedi
Patryk Pijanowski
Congratulations on the launch! We are just hiring a dozen new developers and this tool may come in handy.
Elke
This looks fantastic, @nimishk! The ease of integrating with tools like GitHub and AWS is a game-changer for teams. Excited to see how Phase can streamline secrets management! Upvoted! ๐Ÿš€
Ema Elisi
Nice launch, @nimishk! ๐ŸŽ‰ Finally, a way to stop password-sharing chaos. Can't wait to see this in action across my projects. Upvoted! ๐Ÿ’ฏ
Ghost Kitty
Comment Deleted
Kyrylo Silin
Hey, Questions: 1. How does it handle secret rotation and versioning? 2. For teams transitioning from other secret management tools, do you offer any migration utilities or guides to help streamline the process? Congrats on the launch!
Nimish K
Hey @kyrylosilin Great questions! ๐Ÿ‘‹ 1. Secret rotation and versioning: You can set up auto-rotation for secrets on your preferred schedule. There's also a git-style history view where you can see all secret changes over time and roll back to previous versions if needed. 2. Migration: Yes, we have guides for importing secrets from certain secret managers like Hashicorp Vault and AWS Secrets Manager at this time, but we can certainly create a new guides and offer migration assistance if you're using something else. Cool if I DM on Twitter/X?
Star Boat
Congrats on the launch of Phase, @nimishk! ๐ŸŽ‰ As someone whoโ€™s seen the challenges of managing application secrets firsthand, this tool looks like a lifesaver. The seamless integration with existing workflowsโ€”whether it's GitHub, Docker, or AWSโ€”along with end-to-end encryption, makes Phase a must-have for fast-moving engineering teams. Canโ€™t wait to dive into the GitHub repo and give Phase a try in our next project. Upvoted and looking forward to seeing how this evolves! ๐Ÿš€
Olena Variacheva
Phase is a powerful open source application secrets manager ideal for dynamic engineering teams. An indispensable tool for secure and efficient application deployment.
Prathamesh Sujgure
Congrats on launch. This is cool we have a open source secret manager. Keep up the good work!
Antoine Gauthier
Loving the direction Phase is going, @nimishk! ๐Ÿ”ฅ The integration with tools like GitHub and AWS is a game changer for secure deployments. Can't wait to try it out! Upvoted! ๐Ÿš€