{
  "data": {
    "category": {
      "area": "agent-runtime",
      "capabilities": [
        "secrets.store",
        "secrets.rotate",
        "secrets.machine-identity",
        "secrets.audit",
        "secrets.self-host"
      ],
      "description": "Stores for API keys and other secrets that an agent or its runtime reads at call time, instead of keeping them in prompts, config files or environment dumps. Compared on access controls, rotation, audit, SDKs and self-hosting.",
      "indexed": [
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/advisorfinder-mcp.json",
          "kind": "mcp",
          "name": "advisorfinder.com MCP server",
          "slug": "advisorfinder-mcp",
          "url": "https://www.anchorterminal.com/tools/advisorfinder-mcp"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/focusgts-aep.json",
          "kind": "mcp",
          "name": "aep",
          "slug": "focusgts-aep",
          "url": "https://www.anchorterminal.com/tools/focusgts-aep"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/atlasyield-mcp.json",
          "kind": "mcp",
          "name": "AtlasYield",
          "slug": "atlasyield-mcp",
          "url": "https://www.anchorterminal.com/tools/atlasyield-mcp"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/correctover-mcp-server.json",
          "kind": "mcp",
          "name": "correctover.com MCP server",
          "slug": "correctover-mcp-server",
          "url": "https://www.anchorterminal.com/tools/correctover-mcp-server"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/designvault.json",
          "kind": "mcp",
          "name": "designvault",
          "slug": "designvault",
          "url": "https://www.anchorterminal.com/tools/designvault"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/draugr.json",
          "kind": "mcp",
          "name": "Draugr",
          "slug": "draugr",
          "url": "https://www.anchorterminal.com/tools/draugr"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/fentz-envcp.json",
          "kind": "mcp",
          "name": "envcp",
          "slug": "fentz-envcp",
          "url": "https://www.anchorterminal.com/tools/fentz-envcp"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/flarehq-security.json",
          "kind": "mcp",
          "name": "Flare",
          "slug": "flarehq-security",
          "url": "https://www.anchorterminal.com/tools/flarehq-security"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/graneth-mcp-server.json",
          "kind": "mcp",
          "name": "Graneth",
          "slug": "graneth-mcp-server",
          "url": "https://www.anchorterminal.com/tools/graneth-mcp-server"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/royashbrook-hush.json",
          "kind": "mcp",
          "name": "hush",
          "slug": "royashbrook-hush",
          "url": "https://www.anchorterminal.com/tools/royashbrook-hush"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/identark-gateway.json",
          "kind": "mcp",
          "name": "IdentArk Gateway",
          "slug": "identark-gateway",
          "url": "https://www.anchorterminal.com/tools/identark-gateway"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/jikida-mcp.json",
          "kind": "mcp",
          "name": "jikida.io MCP server",
          "slug": "jikida-mcp",
          "url": "https://www.anchorterminal.com/tools/jikida-mcp"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/kolonie.json",
          "kind": "mcp",
          "name": "Kolonie AI",
          "slug": "kolonie",
          "url": "https://www.anchorterminal.com/tools/kolonie"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/marchward-mcp-server.json",
          "kind": "mcp",
          "name": "marchward.ai MCP server",
          "slug": "marchward-mcp-server",
          "url": "https://www.anchorterminal.com/tools/marchward-mcp-server"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/opzyai-mcp.json",
          "kind": "mcp",
          "name": "Opzyai Security Check",
          "slug": "opzyai-mcp",
          "url": "https://www.anchorterminal.com/tools/opzyai-mcp"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/paysafe-agent-paysafe.json",
          "kind": "mcp",
          "name": "paysafe",
          "slug": "paysafe-agent-paysafe",
          "url": "https://www.anchorterminal.com/tools/paysafe-agent-paysafe"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/philidor-defi-vaults.json",
          "kind": "mcp",
          "name": "Philidor DeFi Vault Risk Analytics",
          "slug": "philidor-defi-vaults",
          "url": "https://www.anchorterminal.com/tools/philidor-defi-vaults"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/seal-mcp.json",
          "kind": "mcp",
          "name": "SEAL",
          "slug": "seal-mcp",
          "url": "https://www.anchorterminal.com/tools/seal-mcp"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/seekrit-mcp.json",
          "kind": "mcp",
          "name": "seekrit (local crypto plane)",
          "slug": "seekrit-mcp",
          "url": "https://www.anchorterminal.com/tools/seekrit-mcp"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/ship-safe-scanner.json",
          "kind": "mcp",
          "name": "ShipSafe — Independent security verification",
          "slug": "ship-safe-scanner",
          "url": "https://www.anchorterminal.com/tools/ship-safe-scanner"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/getskarn-skarn.json",
          "kind": "mcp",
          "name": "Skarn",
          "slug": "getskarn-skarn",
          "url": "https://www.anchorterminal.com/tools/getskarn-skarn"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/speedvault-mcp.json",
          "kind": "mcp",
          "name": "speedvault.io MCP server",
          "slug": "speedvault-mcp",
          "url": "https://www.anchorterminal.com/tools/speedvault-mcp"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/human-tap.json",
          "kind": "mcp",
          "name": "TAP",
          "slug": "human-tap",
          "url": "https://www.anchorterminal.com/tools/human-tap"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/trestlescan-trestle.json",
          "kind": "mcp",
          "name": "Trestle",
          "slug": "trestlescan-trestle",
          "url": "https://www.anchorterminal.com/tools/trestlescan-trestle"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/trustysquire-trusty-squire.json",
          "kind": "mcp",
          "name": "Trusty Squire",
          "slug": "trustysquire-trusty-squire",
          "url": "https://www.anchorterminal.com/tools/trustysquire-trusty-squire"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/unmarking.json",
          "kind": "mcp",
          "name": "unmarking",
          "slug": "unmarking",
          "url": "https://www.anchorterminal.com/tools/unmarking"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/uplink.json",
          "kind": "mcp",
          "name": "Uplink",
          "slug": "uplink",
          "url": "https://www.anchorterminal.com/tools/uplink"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/seanwinslow-vault-knowledge.json",
          "kind": "mcp",
          "name": "vault-knowledge",
          "slug": "seanwinslow-vault-knowledge",
          "url": "https://www.anchorterminal.com/tools/seanwinslow-vault-knowledge"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/metamuse-wallet.json",
          "kind": "mcp",
          "name": "wallet",
          "slug": "metamuse-wallet",
          "url": "https://www.anchorterminal.com/tools/metamuse-wallet"
        },
        {
          "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/yault-aesp.json",
          "kind": "mcp",
          "name": "Yault AESP",
          "slug": "yault-aesp",
          "url": "https://www.anchorterminal.com/tools/yault-aesp"
        }
      ],
      "indexedCount": 30,
      "json": "https://www.anchorterminal.com/categories/secrets.json",
      "name": "Secrets \u0026 credential vaults",
      "slug": "secrets",
      "test": "An agent runtime reads a key at call time with a scoped machine identity, the key is rotated mid-run and access is then revoked. We check the scoping, how rotation lands, what the audit log records and how long each read takes.",
      "title": "Secrets managers and credential vaults for agents",
      "toolCount": 9,
      "tools": [
        "infisical",
        "aws-secrets-manager",
        "google-secret-manager",
        "akeyless",
        "doppler",
        "1password",
        "azure-mcp",
        "hashicorp-vault",
        "bitwarden-secrets-manager"
      ],
      "url": "https://www.anchorterminal.com/categories/secrets"
    },
    "tools": [
      {
        "slug": "infisical",
        "name": "Infisical",
        "vendor": "Infisical",
        "vendorUrl": "https://infisical.com",
        "kind": "http-api",
        "category": "secrets",
        "summary": "Open-source secrets manager with machine identities (Universal Auth, OIDC, AWS, GCP, Azure, Kubernetes, SPIFFE), dynamic secrets, rotation and audit logs, hosted in the US or EU or self-hosted.",
        "url": "https://www.anchorterminal.com/tools/infisical",
        "markdownUrl": "https://www.anchorterminal.com/tools/infisical.md",
        "slimMarkdownUrl": "https://www.anchorterminal.com/tools/infisical.min.md",
        "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/infisical.json",
        "repo": "https://github.com/Infisical/infisical",
        "license": "MIT (core), proprietary under ee/",
        "transports": [
          "http",
          "streamable-http",
          "stdio"
        ],
        "remoteUrl": "https://app.infisical.com/api",
        "packages": [
          {
            "registry": "npm",
            "name": "@infisical/sdk"
          },
          {
            "registry": "pypi",
            "name": "infisicalsdk"
          },
          {
            "registry": "npm",
            "name": "@infisical/cli"
          },
          {
            "registry": "npm",
            "name": "@infisical/mcp"
          }
        ],
        "auth": "mixed",
        "authNotes": "Machine identities log in with Universal Auth (client ID and secret posted to /api/v1/auth/universal-auth/login), Token Auth, OIDC, JWT, or native AWS, Azure, GCP, Kubernetes, OCI, AliCloud, LDAP, TLS certificate or SPIFFE auth, and get a short-lived access token (`st.…`, default TTL 7,200 s) sent as a Bearer header. Revoke it at /api/v1/auth/token/revoke. Agent Vault sessions use a separate session token that only works against the proxy. The docs MCP server at infisical.com/docs/mcp needs no auth.",
        "pricing": "freemium",
        "pricingNotes": "Free, Pro, Advanced and Enterprise plans on Infisical Cloud. Free is $0 with 5 identities, 3 environments, no audit logs, no rotation and no dynamic secrets, and needs no card. Pro is $20 per identity a month billed yearly ($23 monthly) with 30-day audit logs and rotation. Advanced is $40 per identity a month billed yearly ($46 monthly) with 90-day audit logs, dynamic secrets and higher rate limits. Pro and Advanced trials need no card. Enterprise is custom. Agent Proxy is on Free and Pro for static secrets. Cloud rate limits are per client IP, 600 requests a minute overall, then Free 200 reads, 90 writes and 120 secret operations a minute, Pro 350, 200 and 300. Self-hosting the MIT core is free with no rate limits; the code under ee/ needs an Enterprise licence (https://infisical.com/pricing, https://infisical.com/docs/api-reference/overview/rate-limits).",
        "priceSummary": "Freemium",
        "where": "both",
        "x402": {
          "level": "no",
          "endpoints": []
        },
        "toolCount": 10,
        "popularity": {
          "githubStars": 28405,
          "npmWeekly": 305133,
          "pypiWeekly": 391329,
          "asOf": "2026-09-30"
        },
        "docsUrl": "https://infisical.com/docs",
        "llmsTxt": "https://infisical.com/docs/llms.txt",
        "openapi": "https://app.infisical.com/api/docs/json",
        "capabilities": [
          "secrets.store",
          "secrets.rotate",
          "secrets.machine-identity",
          "secrets.audit",
          "secrets.self-host",
          "auth.agent-identity"
        ],
        "tags": [
          "hosted",
          "self-hosted",
          "open-source",
          "freemium",
          "free-tier",
          "mcp",
          "llms-txt",
          "openapi",
          "typescript",
          "python",
          "go",
          "enterprise",
          "eu"
        ],
        "lastRelease": "2026-09-23",
        "graded": true,
        "anchor": {
          "graded": true,
          "score": 81.9,
          "grade": "A",
          "agentReady": true,
          "rank": 4,
          "ranked": true,
          "rankOf": 452,
          "categoryRank": 1,
          "methodology": "0.3",
          "run": "2026-10-01",
          "scores": {
            "ergonomics": 91,
            "maintenance": 90,
            "payments": 30,
            "reliability": 90,
            "schema": 87,
            "security": 91,
            "transparency": 85
          },
          "pending": [
            "performance",
            "tasks"
          ],
          "assessment": {
            "confidence": "medium",
            "date": "2026-10-01"
          },
          "negative": 0,
          "verdict": "Agent Vault and Agent Proxy attach credentials at the proxy, so the agent's context never contains them. Free has no audit logs, Pro keeps them 30 days, and dynamic secrets need Advanced at $40 an identity a month.",
          "strengths": [
            "Agent Vault and Agent Proxy attach credentials at the proxy, so the agent's context never contains them",
            "Thirteen machine identity auth methods with short-lived, revocable access tokens",
            "MIT core that self-hosts with no API rate limits, plus US and EU cloud regions",
            "Official MCP server with 10 annotated tools, a tool allowlist and optional value masking",
            "48 tagged releases between 3 July and 23 September 2026, each with an upgrade-impact note"
          ],
          "weaknesses": [
            "Free has no audit logs, Pro keeps them 30 days, and dynamic secrets need Advanced at $40 an identity a month",
            "Cloud rate limits are per client IP, so agents behind one NAT share 600 requests a minute",
            "The MCP server returns secret values unless INFISICAL_MASK_SECRET_VALUES is set, and it's still version 0.0.x",
            "Agent Vault session tokens travel to the proxy unencrypted, and the feature sits under the proprietary ee/ licence",
            "No SLA found, and every listed subprocessor is in the United States despite the EU region"
          ],
          "agentNotes": [
            "Run a coding agent under `infisical agent-vault run` with a bundle that allows only the hosts, methods and paths it needs, and set --ttl to the job length",
            "Start @infisical/mcp with INFISICAL_ENABLED_TOOLS=list-projects,list-secrets,get-secret and INFISICAL_MASK_SECRET_VALUES=true unless the model must see a value",
            "Log in once with Universal Auth and keep the access token for its TTL, since identity logins count against the per-IP write limit",
            "Pass viewSecretValue=false to GET /api/v4/secrets when you only need names, and expandSecretReferences=true when values reference other secrets",
            "On a 429 read the seconds from the message field and wait that long; don't retry a POST after a 5xx without checking it didn't land"
          ],
          "metrics": {
            "kind": "remote",
            "measured": false
          },
          "reviewCount": 8,
          "avgRating": 3.8,
          "history": [
            {
              "basis": "public evidence",
              "confidence": "medium",
              "grade": "A",
              "methodology": "0.3",
              "pending": [
                "performance",
                "tasks"
              ],
              "run": "2026-10-01",
              "runLabel": "October 2026 research run",
              "score": 81.9
            }
          ],
          "editorialScores": {
            "ergonomics": 91,
            "maintenance": 90,
            "payments": 30,
            "reliability": 90,
            "schema": 87,
            "security": 91,
            "transparency": 77
          },
          "provenanceScore": 92
        },
        "connect": {
          "install": "npm install @infisical/sdk   # or: pip install infisicalsdk, brew install infisical/get-cli/infisical",
          "http": "curl -G https://app.infisical.com/api/v4/secrets -H \"Authorization: Bearer $INFISICAL_TOKEN\" \\\n  --data-urlencode \"projectId=$INFISICAL_PROJECT_ID\" --data-urlencode \"environment=prod\" --data-urlencode \"secretPath=/\"",
          "claudeCode": "claude mcp add infisical -e INFISICAL_UNIVERSAL_AUTH_CLIENT_ID=$INFISICAL_CLIENT_ID -e INFISICAL_UNIVERSAL_AUTH_CLIENT_SECRET=$INFISICAL_CLIENT_SECRET -e INFISICAL_ENABLED_TOOLS=list-projects,list-secrets,get-secret -- npx -y @infisical/mcp",
          "config": {
            "mcpServers": {
              "infisical": {
                "args": [
                  "-y",
                  "@infisical/mcp"
                ],
                "command": "npx",
                "env": {
                  "INFISICAL_ENABLED_TOOLS": "list-projects,list-secrets,get-secret",
                  "INFISICAL_UNIVERSAL_AUTH_CLIENT_ID": "${INFISICAL_CLIENT_ID}",
                  "INFISICAL_UNIVERSAL_AUTH_CLIENT_SECRET": "${INFISICAL_CLIENT_SECRET}"
                }
              }
            }
          }
        },
        "letme": {
          "capability": "https://letme.dev/secrets.store",
          "tool": "https://letme.dev/infisical"
        },
        "area": "agent-runtime",
        "provenance": {
          "legalEntity": "Infisical, Inc.",
          "domain": "infisical.com",
          "domainRegistered": "2022-07-06",
          "endpointOnVendorDomain": true,
          "terms": "https://infisical.com/terms",
          "privacy": "https://infisical.com/privacy",
          "statusPage": "https://status.infisical.com",
          "changelog": "https://github.com/Infisical/infisical/releases",
          "securityTxt": "valid",
          "checked": "2026-10-01",
          "notes": [
            "The privacy policy (last updated 15 September 2025) names Infisical, Inc. without a postal address and links a subprocessor list dated 9 September 2026 with 17 entries, all in the United States.",
            "security.txt expires 2027-08-01 and points to a Bugcrowd disclosure programme; a paid bounty is private and invitation-only.",
            "The docs changelog stops at July 2025; releases since then are tagged on GitHub with generated notes and an upgrade-impact file per release in the repository.",
            "status.infisical.com runs on incident.io and showed only a planned maintenance on 23 July 2026 between July and October 2026."
          ],
          "score": 92
        },
        "pageJsonUrl": "https://www.anchorterminal.com/tools/infisical.json",
        "live": {
          "slug": "infisical",
          "probe": {
            "target": "https://app.infisical.com/api",
            "method": "get",
            "lastAt": "2026-10-04T21:48:29.742999398Z",
            "lastOk": true,
            "lastStatus": 404,
            "lastMs": 305,
            "authRequired": false,
            "uptime24h": 100,
            "uptime30d": 100,
            "p50ms24h": 254,
            "p95ms24h": 321,
            "samples24h": 272,
            "samples30d": 875,
            "days": [
              {
                "date": "2026-10-01",
                "probes": 109,
                "ok": 109
              },
              {
                "date": "2026-10-02",
                "probes": 248,
                "ok": 248
              },
              {
                "date": "2026-10-03",
                "probes": 271,
                "ok": 271
              },
              {
                "date": "2026-10-04",
                "probes": 247,
                "ok": 247
              }
            ]
          },
          "vendorStatus": {
            "page": "https://status.infisical.com",
            "indicator": "none",
            "summary": "All Systems Operational",
            "checkedAt": "2026-10-04T21:40:09.598729152Z"
          },
          "versions": [
            {
              "registry": "github",
              "name": "Infisical/infisical",
              "version": "v0.165.16",
              "released": "2026-09-23",
              "seenAt": "2026-10-04T16:30:07.020121532Z"
            },
            {
              "registry": "npm",
              "name": "@infisical/cli",
              "version": "0.43.138",
              "seenAt": "2026-10-04T16:30:03.879471957Z"
            },
            {
              "registry": "npm",
              "name": "@infisical/mcp",
              "version": "0.0.24",
              "seenAt": "2026-10-04T16:30:05.024522005Z"
            },
            {
              "registry": "npm",
              "name": "@infisical/sdk",
              "version": "5.0.2",
              "seenAt": "2026-10-04T16:30:02.799307929Z"
            },
            {
              "registry": "pypi",
              "name": "infisicalsdk",
              "version": "1.0.17",
              "released": "2026-08-17",
              "seenAt": "2026-10-04T16:30:03.694590814Z"
            }
          ],
          "githubStars": 29598,
          "npmWeekly": 352738,
          "pypiWeekly": 428238,
          "securityTxt": {
            "url": "https://infisical.com/.well-known/security.txt",
            "state": "valid",
            "expires": "2027-08-01T00:00:00.000Z",
            "checkedAt": "2026-10-04T15:15:56.427929639Z"
          },
          "llmsTxt": {
            "url": "https://infisical.com/docs/llms.txt",
            "ok": true,
            "status": 200,
            "checkedAt": "2026-10-04T15:17:54.483742063Z"
          },
          "domain": {
            "domain": "infisical.com",
            "registered": "2022-07-06",
            "source": "https://rdap.verisign.com/com/v1/domain/infisical.com",
            "checkedAt": "2026-10-04T13:05:56.955224704Z"
          },
          "pages": [
            {
              "url": "https://infisical.com/pricing",
              "kind": "pricing",
              "status": 200,
              "checkedAt": "2026-10-04T15:45:06.403675987Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "b27bc7fd3df5"
            },
            {
              "url": "https://infisical.com/privacy",
              "kind": "privacy",
              "status": 200,
              "checkedAt": "2026-10-04T15:45:08.688215502Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "f0c109cb65cf"
            },
            {
              "url": "https://infisical.com/terms",
              "kind": "terms",
              "status": 304,
              "checkedAt": "2026-10-04T15:45:10.606822528Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "01d76f6adafb"
            }
          ],
          "updatedAt": "2026-10-04T21:48:29.742999398Z"
        }
      },
      {
        "slug": "aws-secrets-manager",
        "name": "AWS Secrets Manager",
        "vendor": "Amazon Web Services",
        "vendorUrl": "https://aws.amazon.com/secrets-manager/",
        "kind": "http-api",
        "category": "secrets",
        "summary": "Managed secrets store priced per secret and per API call, with IAM for access, KMS for encryption, CloudTrail for audit, cross-region replication and rotation either managed (RDS, Aurora, DocumentDB, Redshift) or by a Lambda function you own.",
        "url": "https://www.anchorterminal.com/tools/aws-secrets-manager",
        "markdownUrl": "https://www.anchorterminal.com/tools/aws-secrets-manager.md",
        "slimMarkdownUrl": "https://www.anchorterminal.com/tools/aws-secrets-manager.min.md",
        "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/aws-secrets-manager.json",
        "transports": [
          "http"
        ],
        "remoteUrl": "https://secretsmanager.us-east-1.amazonaws.com",
        "packages": [
          {
            "registry": "npm",
            "name": "@aws-sdk/client-secrets-manager"
          },
          {
            "registry": "pypi",
            "name": "boto3"
          }
        ],
        "auth": "mixed",
        "authNotes": "SigV4-signed requests with AWS credentials. On AWS compute the runtime gets short-lived credentials from an IAM role; elsewhere it needs AWS credentials of its own. The caller needs secretsmanager:GetSecretValue and, for a customer-managed KMS key, kms:Decrypt. Resource policies on a secret can grant cross-account access.",
        "pricing": "usage",
        "pricingNotes": "$0.40 per secret a month and $0.05 per 10,000 API calls, with no charge for the new versions rotation creates. New AWS customers since 15 July 2025 get up to $200 of Free Tier credit usable on Secrets Manager, with the free plan lasting 6 months and all credits expiring within 12 months; an AWS account needs a payment method (https://aws.amazon.com/secrets-manager/pricing/).",
        "priceSummary": "$0.40 / mo",
        "where": "hosted",
        "x402": {
          "level": "no",
          "endpoints": []
        },
        "toolCount": null,
        "popularity": {
          "githubStars": null,
          "npmWeekly": 15195593,
          "pypiWeekly": 578449536,
          "asOf": "2026-09-30"
        },
        "docsUrl": "https://docs.aws.amazon.com/secretsmanager/latest/userguide/",
        "llmsTxt": "https://docs.aws.amazon.com/secretsmanager/latest/userguide/llms.txt",
        "capabilities": [
          "secrets.store",
          "secrets.rotate",
          "secrets.machine-identity",
          "secrets.audit",
          "infra.aws"
        ],
        "tags": [
          "hosted",
          "closed-source",
          "usage-priced",
          "card-required",
          "llms-txt",
          "typescript",
          "python",
          "go",
          "enterprise",
          "eu"
        ],
        "graded": true,
        "anchor": {
          "graded": true,
          "score": 78.1,
          "grade": "A",
          "agentReady": true,
          "rank": 15,
          "ranked": true,
          "rankOf": 452,
          "categoryRank": 2,
          "methodology": "0.3",
          "run": "2026-10-01",
          "scores": {
            "ergonomics": 90,
            "maintenance": 65,
            "payments": 20,
            "reliability": 87,
            "schema": 96,
            "security": 88,
            "transparency": 79
          },
          "pending": [
            "performance",
            "tasks"
          ],
          "assessment": {
            "confidence": "medium",
            "date": "2026-10-01"
          },
          "negative": 0,
          "verdict": "IAM roles support access without long-lived credentials on AWS compute services. Each API call is billed, making caching relevant to frequent reads.",
          "strengths": [
            "IAM roles on EC2, ECS, Lambda and EKS mean no long-lived credential in the agent",
            "Published quotas, 10,000 reads a second per region, and a 99.99% SLA",
            "Idempotent writes on ClientRequestToken and immutable versions",
            "CloudTrail entry for every call, and KMS encryption with your own key if you want",
            "llms.txt for the user guide and typed service models in every AWS SDK"
          ],
          "weaknesses": [
            "Every API call is billed, so per-request reads add up and the docs push you to cache",
            "Rotation outside the RDS family means writing and running a Lambda function",
            "Off-AWS agents need AWS credentials of their own, often a static access key",
            "No Secrets Manager MCP server, and the general AWS API server's read-only mode still allows GetSecretValue",
            "The security.txt at aws.amazon.com expired on 24 September 2026, and signup needs a payment method"
          ],
          "agentNotes": [
            "Give the agent's task or instance role secretsmanager:GetSecretValue on the specific secret ARN, not a wildcard",
            "Cache the value for the run, or read through the Workload Credentials Provider on localhost; each GetSecretValue is billed and logged",
            "Use BatchGetSecretValue with a filter when you need several secrets at start-up; it's limited to 100 calls a second",
            "Pass a ClientRequestToken on PutSecretValue so a retry can't create a second version, and don't write more than once every 10 minutes",
            "Read VersionStage AWSPREVIOUS if a rotation lands mid-run and the new credential isn't live yet"
          ],
          "metrics": {
            "kind": "remote",
            "measured": false
          },
          "reviewCount": 8,
          "avgRating": 3.9,
          "history": [
            {
              "basis": "public evidence",
              "confidence": "medium",
              "grade": "A",
              "methodology": "0.3",
              "pending": [
                "performance",
                "tasks"
              ],
              "run": "2026-10-01",
              "runLabel": "October 2026 research run",
              "score": 78.1
            }
          ],
          "editorialScores": {
            "ergonomics": 90,
            "maintenance": 65,
            "payments": 20,
            "reliability": 87,
            "schema": 96,
            "security": 88,
            "transparency": 63
          },
          "provenanceScore": 95
        },
        "connect": {
          "install": "pip install boto3   # or: npm i @aws-sdk/client-secrets-manager",
          "http": "curl -X POST \"https://secretsmanager.us-east-1.amazonaws.com/\" \\\n  --aws-sigv4 \"aws:amz:us-east-1:secretsmanager\" --user \"$AWS_ACCESS_KEY_ID:$AWS_SECRET_ACCESS_KEY\" \\\n  -H \"X-Amz-Target: secretsmanager.GetSecretValue\" -H \"Content-Type: application/x-amz-json-1.1\" \\\n  -d '{\"SecretId\":\"prod/myapp/db\"}'"
        },
        "letme": {
          "capability": "https://letme.dev/secrets.store",
          "tool": "https://letme.dev/aws-secrets-manager"
        },
        "sameCompany": [
          "amazon-bedrock-guardrails",
          "amazon-transcribe",
          "amazon-polly",
          "aws-mcp-servers",
          "amazon-ses",
          "amazon-translate"
        ],
        "area": "agent-runtime",
        "unitPrices": [
          {
            "item": "Stored secret",
            "unit": "month",
            "usd": 0.4,
            "note": "Per secret a month"
          },
          {
            "item": "API calls",
            "unit": "1k-calls",
            "usd": 0.005,
            "note": "$0.05 per 10,000 calls"
          }
        ],
        "provenance": {
          "legalEntity": "Amazon Web Services, Inc. (Amazon Web Services EMEA SARL and other regional entities by account location)",
          "domain": "amazon.com",
          "domainRegistered": "1994-11-01",
          "domainNote": "The service lives under aws.amazon.com, a subdomain of amazon.com.",
          "endpointOnVendorDomain": true,
          "terms": "https://aws.amazon.com/service-terms/",
          "privacy": "https://aws.amazon.com/privacy/",
          "statusPage": "https://health.aws.amazon.com/health/status",
          "changelog": "https://docs.aws.amazon.com/secretsmanager/latest/userguide/doc-history.html",
          "securityTxt": "expired",
          "checked": "2026-10-01",
          "notes": [
            "Service Terms last updated 15 September 2026 name Amazon Web Services, Inc. for most customers and regional entities for Australia, Japan, Korea, EMEA and India. The privacy notice (18 May 2026) gives 410 Terry Avenue North, Seattle, WA 98109-5210.",
            "security.txt Expires 2026-09-24T16:25:03Z, so it had lapsed when we checked on 1 October 2026. It points to the AWS VDP on HackerOne.",
            "The pricing page loaded on 1 October 2026 and confirms $0.40 a secret a month and $0.05 per 10,000 calls.",
            "The document history page returned too many redirects again; the newest Secrets Manager API model change in botocore is from 11 December 2025.",
            "health.aws.amazon.com/health/status is a JavaScript page; the per-service RSS feed for Secrets Manager in us-east-1 had no items on 1 October 2026."
          ],
          "score": 95
        },
        "pageJsonUrl": "https://www.anchorterminal.com/tools/aws-secrets-manager.json",
        "live": {
          "slug": "aws-secrets-manager",
          "probe": {
            "target": "https://secretsmanager.us-east-1.amazonaws.com",
            "method": "get",
            "lastAt": "2026-10-04T21:48:23.241024475Z",
            "lastOk": true,
            "lastStatus": 404,
            "lastMs": 1816,
            "authRequired": false,
            "uptime24h": 100,
            "uptime30d": 100,
            "p50ms24h": 1781,
            "p95ms24h": 2224,
            "samples24h": 272,
            "samples30d": 875,
            "days": [
              {
                "date": "2026-10-01",
                "probes": 109,
                "ok": 109
              },
              {
                "date": "2026-10-02",
                "probes": 248,
                "ok": 248
              },
              {
                "date": "2026-10-03",
                "probes": 271,
                "ok": 271
              },
              {
                "date": "2026-10-04",
                "probes": 247,
                "ok": 247
              }
            ]
          },
          "versions": [
            {
              "registry": "npm",
              "name": "@aws-sdk/client-secrets-manager",
              "version": "3.1146.0",
              "seenAt": "2026-10-04T16:21:22.18150713Z"
            },
            {
              "registry": "pypi",
              "name": "boto3",
              "version": "1.43.108",
              "released": "2026-10-02",
              "seenAt": "2026-10-04T16:21:22.994336287Z"
            }
          ],
          "npmWeekly": 16134158,
          "pypiWeekly": 576017728,
          "securityTxt": {
            "url": "https://amazon.com/.well-known/security.txt",
            "state": "valid",
            "checkedAt": "2026-10-04T15:15:49.458098289Z"
          },
          "llmsTxt": {
            "url": "https://docs.aws.amazon.com/secretsmanager/latest/userguide/llms.txt",
            "ok": true,
            "status": 200,
            "checkedAt": "2026-10-04T15:17:22.883710357Z"
          },
          "domain": {
            "domain": "amazon.com",
            "registered": "1994-11-01",
            "source": "https://rdap.verisign.com/com/v1/domain/amazon.com",
            "checkedAt": "2026-10-04T13:06:18.739682554Z"
          },
          "pages": [
            {
              "url": "https://docs.aws.amazon.com/secretsmanager/latest/userguide/doc-history.html",
              "kind": "changelog",
              "status": 304,
              "checkedAt": "2026-10-04T15:43:18.235511313Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "e3b0c44298fc"
            },
            {
              "url": "https://aws.amazon.com/secrets-manager/pricing/",
              "kind": "pricing",
              "status": 304,
              "checkedAt": "2026-10-04T15:41:34.797947893Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "d96ff3d82a94"
            }
          ],
          "updatedAt": "2026-10-04T21:48:23.241024475Z"
        }
      },
      {
        "slug": "google-secret-manager",
        "name": "Google Cloud Secret Manager",
        "vendor": "Google Cloud",
        "vendorUrl": "https://cloud.google.com/security/products/secret-manager",
        "kind": "http-api",
        "category": "secrets",
        "summary": "Google Cloud's managed service for storing and accessing application secrets.",
        "url": "https://www.anchorterminal.com/tools/google-secret-manager",
        "markdownUrl": "https://www.anchorterminal.com/tools/google-secret-manager.md",
        "slimMarkdownUrl": "https://www.anchorterminal.com/tools/google-secret-manager.min.md",
        "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/google-secret-manager.json",
        "repo": "https://github.com/googleapis/google-cloud-python",
        "license": "Apache-2.0 (client libraries)",
        "transports": [
          "http"
        ],
        "remoteUrl": "https://secretmanager.googleapis.com/v1",
        "packages": [
          {
            "registry": "npm",
            "name": "@google-cloud/secret-manager"
          },
          {
            "registry": "pypi",
            "name": "google-cloud-secret-manager"
          }
        ],
        "auth": "oauth",
        "authNotes": "OAuth 2.0 bearer tokens from a Google service account or workload identity (GKE, Cloud Run, GCE metadata server) with the cloud-platform scope. Grant roles/secretmanager.secretAccessor on the secret, not the project, and add IAM conditions for time or version limits. API keys don't work here.",
        "pricing": "usage",
        "pricingNotes": "$0.06 per active secret version per location a month (billed hourly at $0.000082192), $0.03 per 10,000 access operations and $0.05 per rotation notification. Management operations are free. Always free each month for 6 active versions, 10,000 access operations and 3 rotation notifications, and new customers get $300 of trial credit. A user-managed replication policy is charged per location; automatic replication counts as one (https://cloud.google.com/secret-manager/pricing).",
        "priceSummary": "$0.06 / mo",
        "where": "hosted",
        "x402": {
          "level": "no",
          "endpoints": []
        },
        "toolCount": null,
        "popularity": {
          "githubStars": null,
          "npmWeekly": 4224871,
          "pypiWeekly": 13586494,
          "asOf": "2026-09-30"
        },
        "docsUrl": "https://docs.cloud.google.com/secret-manager/docs",
        "capabilities": [
          "secrets.store",
          "secrets.rotate",
          "secrets.machine-identity",
          "secrets.audit",
          "infra.cloud"
        ],
        "tags": [
          "hosted",
          "closed-source",
          "usage-priced",
          "free-tier",
          "card-required",
          "typescript",
          "python",
          "go",
          "enterprise",
          "eu"
        ],
        "lastRelease": "2026-09-14",
        "graded": true,
        "anchor": {
          "graded": true,
          "score": 76.6,
          "grade": "BB",
          "agentReady": true,
          "rank": 26,
          "ranked": true,
          "rankOf": 452,
          "categoryRank": 3,
          "methodology": "0.3",
          "run": "2026-10-01",
          "scores": {
            "ergonomics": 82,
            "maintenance": 87,
            "payments": 20,
            "reliability": 87,
            "schema": 83,
            "security": 85,
            "transparency": 85
          },
          "pending": [
            "performance",
            "tasks"
          ],
          "assessment": {
            "confidence": "medium",
            "date": "2026-10-01"
          },
          "negative": 0,
          "verdict": "Workload identity on GKE, Cloud Run and GCE, so no key in the agent, and API keys are refused. Managed rotation only covers Cloud SQL; other rotation is a Pub/Sub notification you handle.",
          "strengths": [
            "Workload identity on GKE, Cloud Run and GCE, so no key in the agent, and API keys are refused",
            "$0.06 a version a month and $0.03 per 10,000 accesses, with 6 versions and 10,000 accesses a month free",
            "IAM conditions and per-secret roles, with version_destroy_ttl to delay destruction",
            "Regional secrets for data residency and multi-region storage in US, EU, Canada and India",
            "99.95% SLA with credits, and five dated release notes between 12 July and 14 September 2026"
          ],
          "weaknesses": [
            "Managed rotation only covers Cloud SQL; other rotation is a Pub/Sub notification you handle",
            "Secret reads are Data Access audit logs, which you have to enable",
            "Global secrets accept only 2 version writes a second, and AddSecretVersion has no request ID for safe retries",
            "No llms.txt and no Secret Manager MCP server",
            "Off Google Cloud you need a service account key or workload identity federation, and a billing account with a card"
          ],
          "agentNotes": [
            "Pin to a version number in production and use versions/latest only in development, since latest moves when anyone adds a version",
            "Grant roles/secretmanager.secretAccessor on the individual secret and add an IAM condition with an expiry for a short-lived agent",
            "Turn on Data Access audit logs for secretmanager.googleapis.com if you need a record of each read",
            "Read once per run and cache; accesses past 10,000 a month are metered",
            "Use a regional secret (projects/*/locations/*/secrets/*) when the data must stay in one place, and note the higher write quota there"
          ],
          "metrics": {
            "kind": "remote",
            "measured": false
          },
          "reviewCount": 8,
          "avgRating": 3.6,
          "history": [
            {
              "basis": "public evidence",
              "confidence": "medium",
              "grade": "BB",
              "methodology": "0.3",
              "pending": [
                "performance",
                "tasks"
              ],
              "run": "2026-10-01",
              "runLabel": "October 2026 research run",
              "score": 76.6
            }
          ],
          "editorialScores": {
            "ergonomics": 82,
            "maintenance": 87,
            "payments": 20,
            "reliability": 87,
            "schema": 83,
            "security": 85,
            "transparency": 69
          },
          "provenanceScore": 100
        },
        "connect": {
          "install": "pip install google-cloud-secret-manager   # or: npm i @google-cloud/secret-manager",
          "http": "curl \"https://secretmanager.googleapis.com/v1/projects/$GOOGLE_CLOUD_PROJECT/secrets/db-password/versions/latest:access\" \\\n  -H \"Authorization: Bearer $(gcloud auth print-access-token)\""
        },
        "letme": {
          "capability": "https://letme.dev/secrets.store",
          "tool": "https://letme.dev/google-secret-manager"
        },
        "sameCompany": [
          "gemini-api",
          "gemini-embedding",
          "vertex-ai-tuning",
          "google-model-armor",
          "google-imagen",
          "google-veo",
          "google-lyria",
          "google-speech-to-text",
          "google-adk",
          "google-weather-api",
          "chrome-devtools-mcp",
          "google-maps-platform",
          "google-cloud-translation",
          "google-calendar-api",
          "google-drive-api",
          "gemini-cli"
        ],
        "area": "agent-runtime",
        "unitPrices": [
          {
            "item": "Active secret version",
            "unit": "month",
            "usd": 0.06,
            "note": "Per version per location a month"
          },
          {
            "item": "Access operations",
            "unit": "1k-calls",
            "usd": 0.003,
            "note": "$0.03 per 10,000 operations"
          },
          {
            "item": "Rotation notification",
            "unit": "message",
            "usd": 0.05,
            "note": "Per SECRET_ROTATE message to Pub/Sub"
          }
        ],
        "provenance": {
          "legalEntity": "Google LLC (Google Cloud EMEA Limited and other regional entities by billing address)",
          "domain": "google.com",
          "domainRegistered": "1997-09-15",
          "domainNote": "The API lives at secretmanager.googleapis.com and the docs at docs.cloud.google.com, both Google domains.",
          "endpointOnVendorDomain": true,
          "terms": "https://cloud.google.com/terms",
          "privacy": "https://policies.google.com/privacy",
          "statusPage": "https://status.cloud.google.com",
          "changelog": "https://docs.cloud.google.com/secret-manager/docs/release-notes",
          "securityTxt": "valid",
          "checked": "2026-10-01",
          "notes": [
            "The Google Cloud Platform Terms of Service point to cloud.google.com/terms/google-entity, which names Google LLC for the United States and fourteen regional entities including Google Cloud EMEA Limited.",
            "www.google.com/.well-known/security.txt expires 2030-04-01 (30 September check).",
            "status.cloud.google.com/incidents.json had no incident tagged Secret Manager between 1 July and 1 October 2026.",
            "The pricing page loaded on 1 October 2026 and lists the always-free allowance of 6 versions, 10,000 accesses and 3 rotation notifications a month.",
            "The subprocessor page was last modified on 20 August 2026 and links the Cloud Data Processing Addendum."
          ],
          "score": 100
        },
        "pageJsonUrl": "https://www.anchorterminal.com/tools/google-secret-manager.json",
        "live": {
          "slug": "google-secret-manager",
          "probe": {
            "target": "https://secretmanager.googleapis.com/v1",
            "method": "get",
            "lastAt": "2026-10-04T21:48:28.60334887Z",
            "lastOk": true,
            "lastStatus": 404,
            "lastMs": 91,
            "authRequired": false,
            "uptime24h": 100,
            "uptime30d": 100,
            "p50ms24h": 32,
            "p95ms24h": 59,
            "samples24h": 272,
            "samples30d": 875,
            "days": [
              {
                "date": "2026-10-01",
                "probes": 109,
                "ok": 109
              },
              {
                "date": "2026-10-02",
                "probes": 248,
                "ok": 248
              },
              {
                "date": "2026-10-03",
                "probes": 271,
                "ok": 271
              },
              {
                "date": "2026-10-04",
                "probes": 247,
                "ok": 247
              }
            ]
          },
          "versions": [
            {
              "registry": "github",
              "name": "googleapis/google-cloud-python",
              "version": "sqlalchemy-bigquery-v1.17.3",
              "released": "2026-10-02",
              "seenAt": "2026-10-04T16:28:49.436472732Z"
            },
            {
              "registry": "npm",
              "name": "@google-cloud/secret-manager",
              "version": "7.1.1",
              "seenAt": "2026-10-04T16:28:48.415664025Z"
            },
            {
              "registry": "pypi",
              "name": "google-cloud-secret-manager",
              "version": "2.31.0",
              "released": "2026-10-01",
              "seenAt": "2026-10-04T16:28:49.252525474Z"
            }
          ],
          "githubStars": 5400,
          "npmWeekly": 4594649,
          "pypiWeekly": 13607832,
          "securityTxt": {
            "url": "https://google.com/.well-known/security.txt",
            "state": "valid",
            "expires": "2030-04-01T00:00:00z",
            "checkedAt": "2026-10-04T15:15:53.387118101Z"
          },
          "domain": {
            "domain": "google.com",
            "registered": "1997-09-15",
            "source": "https://rdap.verisign.com/com/v1/domain/google.com",
            "checkedAt": "2026-10-04T13:05:50.737985829Z"
          },
          "pages": [
            {
              "url": "https://docs.cloud.google.com/secret-manager/docs/release-notes",
              "kind": "changelog",
              "status": 200,
              "checkedAt": "2026-10-04T15:43:27.397826729Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "3ec2c74e5d97"
            },
            {
              "url": "https://cloud.google.com/secret-manager/pricing",
              "kind": "pricing",
              "status": 200,
              "checkedAt": "2026-10-04T15:41:57.453677516Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "e746ddcf80cb"
            }
          ],
          "updatedAt": "2026-10-04T21:48:28.60334887Z"
        }
      },
      {
        "slug": "akeyless",
        "name": "Akeyless (SecretlessAI and MCP server)",
        "vendor": "Akeyless",
        "vendorUrl": "https://www.akeyless.io",
        "kind": "platform",
        "category": "secrets",
        "summary": "SaaS secrets and machine-identity platform with a self-hosted Gateway that brokers access.",
        "url": "https://www.anchorterminal.com/tools/akeyless",
        "markdownUrl": "https://www.anchorterminal.com/tools/akeyless.md",
        "slimMarkdownUrl": "https://www.anchorterminal.com/tools/akeyless.min.md",
        "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/akeyless.json",
        "repo": "https://github.com/akeylesslabs/akeyless-python",
        "license": "Apache-2.0 (SDKs), closed platform",
        "transports": [
          "http",
          "stdio",
          "streamable-http"
        ],
        "remoteUrl": "https://api.akeyless.io",
        "packages": [
          {
            "registry": "pypi",
            "name": "akeyless"
          },
          {
            "registry": "npm",
            "name": "akeyless"
          }
        ],
        "auth": "mixed",
        "authNotes": "POST /auth with an access-id and a credential from an access key, AWS IAM, Azure AD, GCP, Kubernetes, OIDC, SAML, LDAP, JWT, certificate, OCI, Kerberos or Universal Identity, returning a token passed in the body of later calls. The docs say API key auth is for proofs of concept, not production, and the access key is shown once. The MCP servers reuse the CLI profile or explicit auth flags and inherit its RBAC.",
        "pricing": "freemium",
        "pricingNotes": "Free and Enterprise plans. The free plan has 5 clients, 500 static secrets, 5 dynamic secrets, 5 rotated secrets, 3 targets, 1 OIDC app, 1 SSH and 1 PKI certificate issuer, 5 managed certificates, 1,000 encryption and KMS transactions a day, 5 KMS keys, 5 password manager users with 5 static and 50 shared passwords, 1 Gateway cluster and 3 days of audit log retention, without SAML, OIDC or LDAP auth, zero-knowledge mode, HSM integration or event forwarding. Enterprise is quoted, with clients and transactions counted at the end of each month and overage billed at the end of the 12-month contract. No dollar figures are published (https://www.akeyless.io/pricing/).",
        "priceSummary": "Freemium",
        "where": "both",
        "x402": {
          "level": "no",
          "endpoints": []
        },
        "toolCount": null,
        "popularity": {
          "githubStars": 2,
          "npmWeekly": 3523,
          "pypiWeekly": 219234,
          "asOf": "2026-09-30"
        },
        "docsUrl": "https://docs.akeyless.io",
        "llmsTxt": "https://docs.akeyless.io/llms.txt",
        "openapi": "https://github.com/akeylesslabs/akeyless-go/blob/v5/api/openapi.yaml",
        "capabilities": [
          "secrets.store",
          "secrets.rotate",
          "secrets.machine-identity",
          "secrets.audit",
          "auth.agent-identity"
        ],
        "tags": [
          "hosted",
          "closed-source",
          "freemium",
          "free-tier",
          "mcp",
          "local",
          "python",
          "typescript",
          "go",
          "enterprise"
        ],
        "lastRelease": "2026-09-17",
        "graded": true,
        "anchor": {
          "graded": true,
          "score": 73.7,
          "grade": "BB",
          "agentReady": true,
          "rank": 55,
          "ranked": true,
          "rankOf": 452,
          "categoryRank": 4,
          "methodology": "0.3",
          "run": "2026-10-01",
          "scores": {
            "ergonomics": 63,
            "maintenance": 82,
            "payments": 25,
            "reliability": 90,
            "schema": 81,
            "security": 89,
            "transparency": 73
          },
          "pending": [
            "performance",
            "tasks"
          ],
          "assessment": {
            "confidence": "medium",
            "date": "2026-10-01"
          },
          "negative": 0,
          "verdict": "Gateway-brokered SecretlessAI and a runtime-authority MCP server with 4 tools that return results, not credentials. No published prices above the free plan; clients and transactions are metered with overage billed at the end of a 12-month contract.",
          "strengths": [
            "Gateway-brokered SecretlessAI and a runtime-authority MCP server with 4 tools that return results, not credentials",
            "Runtime Authority intent rules with a kill switch, generally available since 9 September 2026",
            "SOC 2 Type II, ISO 27001, ISO 27701, PCI DSS and FIPS 140-3 validation listed in the trust centre, plus a bug bounty",
            "A 99.99% availability SLA on every support tier, with transaction caps published per tier",
            "OpenAPI 3.0 document for 657 paths in the Go SDK repository, and an llms.txt with about 800 Markdown links"
          ],
          "weaknesses": [
            "No published prices above the free plan; clients and transactions are metered with overage billed at the end of a 12-month contract",
            "Errors come back as a single `error` string with no code, and no Retry-After or backoff guidance turned up",
            "The free plan has no OIDC, SAML or LDAP auth and keeps audit logs for 3 days",
            "akeyless mcp can return secret values to the model, and neither MCP server has a published tool list, version or registry entry",
            "No security.txt, and the closed CLI and Gateway are the only way to run the MCP servers"
          ],
          "agentNotes": [
            "Run akeyless mcp-runtime-authority, not akeyless mcp, for an agent that acts on systems; the first returns results, the second has get_secret and get_password",
            "Authenticate with a cloud identity, Kubernetes or Universal Identity rather than an access key, which the docs reserve for proofs of concept",
            "Use CLI 1.130.0 or later for either MCP server, and point the client at your Gateway URL",
            "Count identities and calls before scaling. The free plan allows 5 clients, and calls over a tier's cap (200 a minute on Silver) are billed as extra clients, not refused",
            "Pass the token in the JSON body of each POST, and page `/list-items` with `pagination-token`"
          ],
          "metrics": {
            "kind": "remote",
            "measured": false
          },
          "reviewCount": 2,
          "avgRating": 3,
          "history": [
            {
              "basis": "public evidence",
              "confidence": "medium",
              "grade": "BB",
              "methodology": "0.3",
              "pending": [
                "performance",
                "tasks"
              ],
              "run": "2026-10-01",
              "runLabel": "October 2026 research run",
              "score": 73.7
            }
          ],
          "editorialScores": {
            "ergonomics": 63,
            "maintenance": 82,
            "payments": 25,
            "reliability": 90,
            "schema": 81,
            "security": 89,
            "transparency": 71
          },
          "provenanceScore": 75
        },
        "connect": {
          "install": "pip install akeyless   # or: npm i akeyless",
          "http": "TOKEN=$(curl -s -X POST https://api.akeyless.io/auth -H \"Content-Type: application/json\" \\\n  -d \"{\\\"access-id\\\":\\\"$AKEYLESS_ACCESS_ID\\\",\\\"access-key\\\":\\\"$AKEYLESS_ACCESS_KEY\\\"}\" | jq -r .token)\ncurl -s -X POST https://api.akeyless.io/get-secret-value -H \"Content-Type: application/json\" \\\n  -d \"{\\\"names\\\":[\\\"/prod/db-password\\\"],\\\"token\\\":\\\"$TOKEN\\\"}\"",
          "claudeCode": "claude mcp add akeyless -- akeyless mcp-runtime-authority",
          "config": {
            "mcpServers": {
              "akeyless": {
                "args": [
                  "mcp-runtime-authority"
                ],
                "command": "akeyless"
              }
            }
          }
        },
        "letme": {
          "capability": "https://letme.dev/secrets.store",
          "tool": "https://letme.dev/akeyless"
        },
        "area": "agent-runtime",
        "provenance": {
          "legalEntity": "Akeyless Security Ltd.",
          "domain": "akeyless.io",
          "domainRegistered": "",
          "endpointOnVendorDomain": true,
          "terms": "https://www.akeyless.io/terms-of-service/",
          "privacy": "https://www.akeyless.io/privacy-policy/",
          "statusPage": "https://status.akeyless.io",
          "changelog": "https://changelog.akeyless.io/cli",
          "securityTxt": "none",
          "checked": "2026-10-01",
          "notes": [
            "Website terms (21 March 2026) and privacy policy (5 May 2026) name Akeyless Security Ltd., Ze'ev Jabotinsky St. 7, Ramat Gan, Israel, with a US subsidiary Akeyless Security USA, Inc. The terms cover the website only; the service runs under a separate licence or master services agreement.",
            "www.akeyless.io/.well-known/security.txt returned 404 when checked on 30 September 2026.",
            "The .io RDAP servers answered 429 and a robots.txt failure, so the registration date is blank.",
            "The status page history shows one incident since 3 July 2026, 21 minutes of degraded dynamic secret performance in us-east-2 on 23 September, and a scheduled maintenance window on 19 July.",
            "The CLI changelog at changelog.akeyless.io dates each release, 1.152.0 on 16 September 2026 being the newest."
          ],
          "score": 75
        },
        "pageJsonUrl": "https://www.anchorterminal.com/tools/akeyless.json",
        "live": {
          "slug": "akeyless",
          "probe": {
            "target": "https://api.akeyless.io",
            "method": "get",
            "lastAt": "2026-10-04T21:48:22.362918326Z",
            "lastOk": true,
            "lastStatus": 405,
            "lastMs": 71,
            "authRequired": false,
            "uptime24h": 100,
            "uptime30d": 100,
            "p50ms24h": 48,
            "p95ms24h": 88,
            "samples24h": 272,
            "samples30d": 875,
            "days": [
              {
                "date": "2026-10-01",
                "probes": 109,
                "ok": 109
              },
              {
                "date": "2026-10-02",
                "probes": 248,
                "ok": 248
              },
              {
                "date": "2026-10-03",
                "probes": 271,
                "ok": 271
              },
              {
                "date": "2026-10-04",
                "probes": 247,
                "ok": 247
              }
            ]
          },
          "vendorStatus": {
            "page": "https://status.akeyless.io",
            "indicator": "none",
            "summary": "All Systems Operational",
            "checkedAt": "2026-10-04T21:39:48.023918729Z"
          },
          "versions": [
            {
              "registry": "npm",
              "name": "akeyless",
              "version": "5.0.38",
              "seenAt": "2026-10-04T16:19:55.300496046Z"
            },
            {
              "registry": "pypi",
              "name": "akeyless",
              "version": "5.0.38",
              "released": "2026-09-17",
              "seenAt": "2026-10-04T16:19:55.072572712Z"
            }
          ],
          "githubStars": 2,
          "npmWeekly": 3693,
          "pypiWeekly": 196221,
          "securityTxt": {
            "url": "https://akeyless.io/.well-known/security.txt",
            "state": "none",
            "checkedAt": "2026-10-04T15:16:01.250724263Z"
          },
          "llmsTxt": {
            "url": "https://docs.akeyless.io/llms.txt",
            "ok": true,
            "status": 200,
            "checkedAt": "2026-10-04T15:17:12.971720694Z"
          },
          "domain": {
            "domain": "akeyless.io",
            "checkedAt": "2026-10-04T13:09:25.717264008Z"
          },
          "pages": [
            {
              "url": "https://changelog.akeyless.io/cli",
              "kind": "changelog",
              "status": 304,
              "checkedAt": "2026-10-04T15:41:49.583946265Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "a38aa48a055f"
            },
            {
              "url": "https://www.akeyless.io/pricing/",
              "kind": "pricing",
              "status": 200,
              "checkedAt": "2026-10-04T15:49:01.074153077Z",
              "changedAt": "2026-10-03T15:36:56.900207187Z",
              "fingerprint": "23bd00d937d2"
            },
            {
              "url": "https://www.akeyless.io/privacy-policy/",
              "kind": "privacy",
              "status": 200,
              "checkedAt": "2026-10-04T15:49:04.419721272Z",
              "changedAt": "2026-10-03T15:36:59.079097768Z",
              "fingerprint": "ae198dd0fa22"
            },
            {
              "url": "https://www.akeyless.io/terms-of-service/",
              "kind": "terms",
              "status": 200,
              "checkedAt": "2026-10-04T15:49:06.864103287Z",
              "changedAt": "2026-10-03T15:37:02.238780939Z",
              "fingerprint": "32e16cb5a55b"
            }
          ],
          "updatedAt": "2026-10-04T21:48:22.362918326Z"
        }
      },
      {
        "slug": "doppler",
        "name": "Doppler",
        "vendor": "Doppler",
        "vendorUrl": "https://www.doppler.com",
        "kind": "http-api",
        "category": "secrets",
        "summary": "Hosted secrets manager organised by project, environment and config.",
        "url": "https://www.anchorterminal.com/tools/doppler",
        "markdownUrl": "https://www.anchorterminal.com/tools/doppler.md",
        "slimMarkdownUrl": "https://www.anchorterminal.com/tools/doppler.min.md",
        "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/doppler.json",
        "repo": "https://github.com/DopplerHQ/mcp-server",
        "license": "Apache-2.0 (MCP server and CLI), closed platform",
        "transports": [
          "http",
          "stdio"
        ],
        "remoteUrl": "https://api.doppler.com/v3",
        "packages": [
          {
            "registry": "npm",
            "name": "@dopplerhq/mcp-server"
          }
        ],
        "auth": "mixed",
        "authNotes": "Bearer tokens on api.doppler.com. Service tokens (`dp.st.\u003cenv\u003e.…`) are scoped to one config, read-only by default and can expire with `--max-age`. Service account identities exchange an OIDC token (GitHub Actions, Kubernetes, AWS EC2 or any issuer) for a short-lived Doppler token at POST /v3/auth/oidc, Team plan and above. The MCP server takes `DOPPLER_TOKEN` or `npx @dopplerhq/mcp-server login`.",
        "pricing": "freemium",
        "pricingNotes": "Developer plan is free for 3 users then $8 a month per extra user, with 10 projects, 50 service tokens, 3-day activity logs and API-based rotation only. Team $21 a month per user with a 14-day trial, 250 projects, 500 service tokens, service accounts, automatic rotation, 90-day logs and SAML. Enterprise is custom, with dynamic secrets (AWS IAM and Azure service principals), proxied rotation, SCIM, on-prem and a 99.95% SLO. The pricing page says AI agents and non-human identities ride free, and doesn't say whether a card is needed (https://www.doppler.com/pricing, https://docs.doppler.com/docs/dynamic-secrets).",
        "priceSummary": "$21 / seat-mo",
        "where": "both",
        "x402": {
          "level": "no",
          "endpoints": []
        },
        "toolCount": null,
        "popularity": {
          "githubStars": 8,
          "npmWeekly": 3261,
          "pypiWeekly": null,
          "asOf": "2026-09-30"
        },
        "docsUrl": "https://docs.doppler.com",
        "llmsTxt": "https://docs.doppler.com/llms.txt",
        "openapi": "https://docs.doppler.com/openapi/core.json",
        "capabilities": [
          "secrets.store",
          "secrets.rotate",
          "secrets.machine-identity",
          "secrets.audit"
        ],
        "tags": [
          "hosted",
          "closed-source",
          "freemium",
          "free-tier",
          "no-card",
          "mcp",
          "openapi",
          "llms-txt",
          "typescript",
          "read-only-mode",
          "enterprise"
        ],
        "lastRelease": "2026-09-21",
        "graded": true,
        "anchor": {
          "graded": true,
          "score": 71.6,
          "grade": "BB",
          "agentReady": true,
          "rank": 79,
          "ranked": true,
          "rankOf": 452,
          "categoryRank": 5,
          "methodology": "0.3",
          "run": "2026-10-01",
          "scores": {
            "ergonomics": 59,
            "maintenance": 76,
            "payments": 25,
            "reliability": 90,
            "schema": 81,
            "security": 82,
            "transparency": 77
          },
          "pending": [
            "performance",
            "tasks"
          ],
          "assessment": {
            "confidence": "medium",
            "date": "2026-10-01"
          },
          "negative": 0,
          "verdict": "Service tokens bound to one config, read-only by default, with --max-age expiry. Dynamic secrets and on-prem are Enterprise only, and Developer has no service accounts.",
          "strengths": [
            "Service tokens bound to one config, read-only by default, with --max-age expiry",
            "OIDC service account identities on Team, so shared runners don't hold a static token",
            "OpenAPI 3.1 and an llms.txt with about 500 Markdown links",
            "Published per-plan rate limits with retry-after and x-ratelimit headers on a 429",
            "MCP server with --read-only and --config modes that cut the tool list to 36 or 10"
          ],
          "weaknesses": [
            "Dynamic secrets and on-prem are Enterprise only, and Developer has no service accounts",
            "The MCP server is experimental, has no tool annotations or value masking, and exposes up to 89 tools by default",
            "35 open CLI issues, most of the newest without a reply",
            "The CLI keeps serving its fallback file after a token is revoked, and sends anonymous analytics unless turned off",
            "No SLA, only a 99.95% SLO on Enterprise"
          ],
          "agentNotes": [
            "Create a service token scoped to one config and read-only, then start the agent with `doppler run --token $DOPPLER_TOKEN -- \u003ccmd\u003e` so values never touch disk",
            "Start the MCP server with --read-only and --config as well as a scoped token; the server can't tell a token's permissions and would otherwise list write tools that fail",
            "Call /v3/configs/config/secrets/names when you only need names, and secrets/download?format=json for every value in one call",
            "On a 429 wait for the retry-after seconds; secret reads have their own limit, 120 a minute on Developer",
            "Run `doppler configure flags disable analytics` on build agents if you don't want CLI command usage reported"
          ],
          "metrics": {
            "kind": "remote",
            "measured": false
          },
          "reviewCount": 2,
          "avgRating": 3,
          "history": [
            {
              "basis": "public evidence",
              "confidence": "medium",
              "grade": "BB",
              "methodology": "0.3",
              "pending": [
                "performance",
                "tasks"
              ],
              "run": "2026-10-01",
              "runLabel": "October 2026 research run",
              "score": 71.6
            }
          ],
          "editorialScores": {
            "ergonomics": 59,
            "maintenance": 76,
            "payments": 25,
            "reliability": 90,
            "schema": 81,
            "security": 82,
            "transparency": 64
          },
          "provenanceScore": 90
        },
        "connect": {
          "http": "curl \"https://api.doppler.com/v3/configs/config/secrets/download?format=json\" \\\n  -H \"Authorization: Bearer $DOPPLER_TOKEN\"",
          "claudeCode": "claude mcp add doppler -e DOPPLER_TOKEN=$DOPPLER_TOKEN -- npx -y @dopplerhq/mcp-server --read-only",
          "config": {
            "mcpServers": {
              "doppler": {
                "args": [
                  "-y",
                  "@dopplerhq/mcp-server",
                  "--read-only"
                ],
                "command": "npx",
                "env": {
                  "DOPPLER_TOKEN": "${DOPPLER_TOKEN}"
                }
              }
            }
          }
        },
        "letme": {
          "capability": "https://letme.dev/secrets.store",
          "tool": "https://letme.dev/doppler"
        },
        "area": "agent-runtime",
        "unitPrices": [
          {
            "item": "Team plan",
            "unit": "seat-month",
            "usd": 21,
            "note": "14-day trial"
          },
          {
            "item": "Developer plan, extra user",
            "unit": "seat-month",
            "usd": 8,
            "note": "First 3 users free"
          }
        ],
        "provenance": {
          "legalEntity": "Doppler Technologies, Inc.",
          "domain": "doppler.com",
          "domainRegistered": "1999-01-24",
          "domainNote": "doppler.com was registered in 1999, long before the company, so the domain was bought later.",
          "endpointOnVendorDomain": true,
          "terms": "https://www.doppler.com/legal/terms",
          "privacy": "https://www.doppler.com/legal/privacy",
          "statusPage": "https://www.dopplerstatus.com",
          "changelog": "https://docs.doppler.com/changelog",
          "securityTxt": "unknown",
          "checked": "2026-10-01",
          "notes": [
            "Terms name Doppler Technologies, Inc., 440 North Barranca Avenue #5880, Covina, CA 91723, last updated 8 February 2026. Privacy notice updated 17 September 2026, data stored in the United States.",
            "www.doppler.com/.well-known/security.txt is disallowed by robots.txt, so we couldn't read it.",
            "www.dopplerstatus.com is Atlassian Statuspage. Its history shows one incident since 3 July 2026 (CLI downloads failing, 16 July) and system outages on 18 November 2025 and 12 June 2025.",
            "The subprocessor list (13 July 2026) names 9 subprocessors, 8 in the United States and Groundcover in Israel, and links a DPA and an on-prem DPA.",
            "The security fact sheet puts all servers in GCP us-central1 and says HackerOne handles disclosures."
          ],
          "score": 90
        },
        "pageJsonUrl": "https://www.anchorterminal.com/tools/doppler.json",
        "live": {
          "slug": "doppler",
          "probe": {
            "target": "https://api.doppler.com/v3",
            "method": "get",
            "lastAt": "2026-10-04T21:48:26.433868578Z",
            "lastOk": true,
            "lastStatus": 401,
            "lastMs": 144,
            "lastNote": "asks for credentials",
            "authRequired": true,
            "uptime24h": 100,
            "uptime30d": 100,
            "p50ms24h": 150,
            "p95ms24h": 214,
            "samples24h": 272,
            "samples30d": 875,
            "days": [
              {
                "date": "2026-10-01",
                "probes": 109,
                "ok": 109
              },
              {
                "date": "2026-10-02",
                "probes": 248,
                "ok": 248
              },
              {
                "date": "2026-10-03",
                "probes": 271,
                "ok": 271
              },
              {
                "date": "2026-10-04",
                "probes": 247,
                "ok": 247
              }
            ]
          },
          "vendorStatus": {
            "page": "https://www.dopplerstatus.com",
            "indicator": "none",
            "summary": "All Systems Operational",
            "checkedAt": "2026-10-04T21:39:56.458436429Z"
          },
          "versions": [
            {
              "registry": "github",
              "name": "DopplerHQ/mcp-server",
              "version": "v1.0.5",
              "released": "2026-06-04",
              "seenAt": "2026-10-04T16:25:42.222400654Z"
            },
            {
              "registry": "npm",
              "name": "@dopplerhq/mcp-server",
              "version": "1.0.5",
              "seenAt": "2026-10-04T16:25:41.357710821Z"
            }
          ],
          "githubStars": 8,
          "npmWeekly": 5296,
          "securityTxt": {
            "url": "https://doppler.com/.well-known/security.txt",
            "state": "none",
            "checkedAt": "2026-10-04T15:15:42.3339237Z"
          },
          "llmsTxt": {
            "url": "https://docs.doppler.com/llms.txt",
            "ok": true,
            "status": 200,
            "checkedAt": "2026-10-04T15:17:31.061902909Z"
          },
          "domain": {
            "domain": "doppler.com",
            "registered": "1999-01-24",
            "source": "https://rdap.verisign.com/com/v1/domain/doppler.com",
            "checkedAt": "2026-10-04T13:08:29.130637863Z"
          },
          "pages": [
            {
              "url": "https://docs.doppler.com/changelog",
              "kind": "changelog",
              "status": 200,
              "checkedAt": "2026-10-04T15:43:35.303385156Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "816d6475b1bd"
            },
            {
              "url": "https://www.doppler.com/pricing",
              "kind": "pricing",
              "status": 304,
              "checkedAt": "2026-10-04T15:50:08.235633812Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "61b46ac39ff9"
            },
            {
              "url": "https://www.doppler.com/legal/privacy",
              "kind": "privacy",
              "status": 304,
              "checkedAt": "2026-10-04T15:50:03.99159557Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "306950b580d5"
            },
            {
              "url": "https://www.doppler.com/legal/terms",
              "kind": "terms",
              "status": 304,
              "checkedAt": "2026-10-04T15:50:06.172772616Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "642e87a74245"
            }
          ],
          "updatedAt": "2026-10-04T21:48:26.433868578Z"
        }
      },
      {
        "slug": "1password",
        "name": "1Password service accounts, SDKs and Environments MCP",
        "vendor": "1Password",
        "vendorUrl": "https://1password.com",
        "kind": "platform",
        "category": "secrets",
        "summary": "Password manager with a developer layer for agents.",
        "url": "https://www.anchorterminal.com/tools/1password",
        "markdownUrl": "https://www.anchorterminal.com/tools/1password.md",
        "slimMarkdownUrl": "https://www.anchorterminal.com/tools/1password.min.md",
        "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/1password.json",
        "repo": "https://github.com/1Password/onepassword-sdk-js",
        "license": "MIT",
        "transports": [
          "stdio"
        ],
        "packages": [
          {
            "registry": "npm",
            "name": "@1password/sdk"
          },
          {
            "registry": "pypi",
            "name": "onepassword-sdk"
          }
        ],
        "auth": "mixed",
        "authNotes": "Service account tokens (`OP_SERVICE_ACCOUNT_TOKEN`) for unattended use, scoped to chosen vaults and Environments and unable to read Personal, Private or Employee vaults. The SDKs can instead prompt the 1Password desktop app, which approves each integration locally with biometrics. The Environments MCP server runs inside the desktop app and asks for approval per Environment until the app locks.",
        "pricing": "paid",
        "pricingNotes": "No free plan, a 14-day trial on every plan. Individual $3.99 a month ($2.99 promotional, billed yearly), Families $5.99 a month for up to 5 people ($4.49 promotional, billed yearly), Teams Starter Pack $24.95 a month for 10 members plus $4.99 a seat, Business $8.99 per user a month billed yearly. The personal pricing page lists 1Password Developer (SSH, Git commit signing, CLI and SDKs) on Individual and Families, and the business page lists the CLI and SDKs on Teams Starter Pack and Business. Service account rate limits are published for every plan. Unified Access, Privileged Access and the other enterprise products are quote only (https://1password.com/pricing/business, https://1password.com/pricing/password-manager).",
        "priceSummary": "$8.99 / seat-mo",
        "where": "local",
        "x402": {
          "level": "no",
          "endpoints": []
        },
        "toolCount": 8,
        "popularity": {
          "githubStars": 110,
          "npmWeekly": 1013526,
          "pypiWeekly": 816683,
          "asOf": "2026-09-30"
        },
        "docsUrl": "https://www.1password.dev",
        "llmsTxt": "https://www.1password.dev/llms.txt",
        "openapi": "https://i.1password.com/media/1password-connect/1password-connect-api_1.8.1.yaml",
        "capabilities": [
          "secrets.store",
          "secrets.machine-identity",
          "secrets.audit"
        ],
        "tags": [
          "hosted",
          "closed-source",
          "card-required",
          "mcp",
          "local",
          "typescript",
          "python",
          "go",
          "enterprise",
          "eu"
        ],
        "lastRelease": "2026-07-31",
        "graded": true,
        "anchor": {
          "graded": true,
          "score": 69.9,
          "grade": "B",
          "agentReady": false,
          "rank": 104,
          "ranked": true,
          "rankOf": 452,
          "categoryRank": 6,
          "methodology": "0.3",
          "run": "2026-10-01",
          "scores": {
            "ergonomics": 69,
            "maintenance": 72,
            "payments": 20,
            "reliability": 68,
            "schema": 74,
            "security": 94,
            "transparency": 89
          },
          "pending": [
            "performance",
            "tasks"
          ],
          "assessment": {
            "confidence": "medium",
            "date": "2026-10-01"
          },
          "negative": 0,
          "verdict": "Service accounts scoped per vault to read, write or share, with an optional expiry and permissions that can't be changed after creation. Teams, Families and Individual get 1,000 service account reads an hour per token, and the 429 carries no Retry-After.",
          "strengths": [
            "Service accounts scoped per vault to read, write or share, with an optional expiry and permissions that can't be changed after creation",
            "Environments MCP server with 8 tools that never returns a secret value and asks for approval per Environment",
            "Official Go, JavaScript and Python SDKs, MIT, with workload identity through the Credential Broker in JavaScript 0.5.0 (public preview)",
            "llms.txt for the developer docs and a public OpenAPI file for the self-hosted Connect server",
            "Signed security.txt, a HackerOne programme, SOC 2 Type II and ISO 27001 listed on the trust centre"
          ],
          "weaknesses": [
            "Teams, Families and Individual get 1,000 service account reads an hour per token, and the 429 carries no Retry-After",
            "SDKs are version 0 with three months of patches per release, and 5 of the 8 newest Python SDK issues have no reply",
            "No SLA found, and the audit log and Events API need Business",
            "The MCP server is beta and needs the desktop app running and unlocked, so it's for a developer's machine, not a server",
            "No MCP registry entry and no way to create a service account without a signed-in person"
          ],
          "agentNotes": [
            "Read secrets by reference (op://vault/item/field) with client.secrets.resolve or resolveAll, and keep the reference, not the value, in config",
            "On Teams or personal plans budget for 1,000 reads an hour per token and cache resolved values for the run; a 429 means wait for the hourly window, there's no Retry-After",
            "Create the service account with only read_items on one vault and --expires-in set to the job length, since permissions can't be narrowed later",
            "Set integrationName and integrationVersion in createClient so the usage report shows which agent read what",
            "Don't ask the Environments MCP server for a value. Use it to find the variable name, then load it with op run or the SDK"
          ],
          "metrics": {
            "kind": "remote",
            "measured": false
          },
          "reviewCount": 2,
          "avgRating": 3.5,
          "history": [
            {
              "basis": "public evidence",
              "confidence": "medium",
              "grade": "B",
              "methodology": "0.3",
              "pending": [
                "performance",
                "tasks"
              ],
              "run": "2026-10-01",
              "runLabel": "October 2026 research run",
              "score": 69.9
            }
          ],
          "editorialScores": {
            "ergonomics": 69,
            "maintenance": 72,
            "payments": 20,
            "reliability": 68,
            "schema": 74,
            "security": 94,
            "transparency": 78
          },
          "provenanceScore": 100
        },
        "connect": {
          "install": "npm install @1password/sdk   # or: pip install onepassword-sdk",
          "http": "export OP_SERVICE_ACCOUNT_TOKEN=\"$OP_SERVICE_ACCOUNT_TOKEN\"\nop read \"op://Production/Stripe/api_key\"   # 1Password CLI, no REST endpoint for secret reads",
          "config": {
            "mcpServers": {
              "1password": {
                "args": [],
                "command": "1password-mcp"
              }
            }
          }
        },
        "letme": {
          "capability": "https://letme.dev/secrets.store",
          "tool": "https://letme.dev/1password"
        },
        "area": "agent-runtime",
        "unitPrices": [
          {
            "item": "Business plan",
            "unit": "seat-month",
            "usd": 8.99,
            "note": "Billed yearly. Developer tools and SSO included"
          },
          {
            "item": "Teams Starter Pack",
            "unit": "month",
            "usd": 24.95,
            "note": "10 members, $4.99 a month per extra seat"
          },
          {
            "item": "Individual plan",
            "unit": "month",
            "usd": 3.99,
            "note": "$2.99 promotional, billed yearly"
          }
        ],
        "provenance": {
          "legalEntity": "AgileBits Inc. (doing business as 1Password)",
          "domain": "1password.com",
          "domainRegistered": "2003-11-30",
          "endpointOnVendorDomain": true,
          "terms": "https://1password.com/legal/terms-of-service",
          "privacy": "https://1password.com/legal/privacy",
          "statusPage": "https://status.1password.com",
          "changelog": "https://releases.1password.com/developers/sdks/",
          "securityTxt": "valid",
          "checked": "2026-10-01",
          "notes": [
            "Terms name AgileBits Inc., 4711 Yonge Street, Toronto, governed by Ontario law, last updated 12 September 2024. The privacy notice is effective 29 December 2025.",
            "security.txt lists security@agilebits.com and a HackerOne programme and is signed, but has no Expires field.",
            "developer.1password.com now redirects to www.1password.dev.",
            "The status page history shows six incidents between 2 July and 9 September 2026, on Device Trust, SaaS Manager, personal account management and the CLI update server, none posted against service accounts or Connect."
          ],
          "score": 100
        },
        "pageJsonUrl": "https://www.anchorterminal.com/tools/1password.json",
        "live": {
          "slug": "1password",
          "vendorStatus": {
            "page": "https://status.1password.com",
            "indicator": "none",
            "summary": "All Systems Operational",
            "checkedAt": "2026-10-04T21:39:47.763242597Z"
          },
          "versions": [
            {
              "registry": "github",
              "name": "1Password/onepassword-sdk-js",
              "version": "v0.5.0",
              "released": "2026-07-31",
              "seenAt": "2026-10-04T16:19:29.795045796Z"
            },
            {
              "registry": "npm",
              "name": "@1password/sdk",
              "version": "0.5.0",
              "seenAt": "2026-10-04T16:19:27.453978185Z"
            },
            {
              "registry": "pypi",
              "name": "onepassword-sdk",
              "version": "0.4.1",
              "released": "2026-07-30",
              "seenAt": "2026-10-04T16:19:28.470969321Z"
            }
          ],
          "githubStars": 110,
          "npmWeekly": 1144520,
          "pypiWeekly": 907992,
          "securityTxt": {
            "url": "https://1password.com/.well-known/security.txt",
            "state": "valid",
            "checkedAt": "2026-10-04T15:15:51.698169765Z"
          },
          "llmsTxt": {
            "url": "https://www.1password.dev/llms.txt",
            "ok": true,
            "status": 200,
            "checkedAt": "2026-10-04T15:17:12.603904586Z"
          },
          "domain": {
            "domain": "1password.com",
            "registered": "2003-11-30",
            "source": "https://rdap.verisign.com/com/v1/domain/1password.com",
            "checkedAt": "2026-10-04T13:03:36.930043964Z"
          },
          "pages": [
            {
              "url": "https://releases.1password.com/developers/sdks/",
              "kind": "changelog",
              "status": 304,
              "checkedAt": "2026-10-04T15:47:15.347202499Z",
              "changedAt": "2026-10-03T15:35:15.432558355Z",
              "fingerprint": "70bd81831178"
            },
            {
              "url": "https://1password.com/pricing/business",
              "kind": "pricing",
              "status": 200,
              "checkedAt": "2026-10-04T15:41:11.172504664Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "c7410e7a546a"
            },
            {
              "url": "https://1password.com/pricing/password-manager",
              "kind": "pricing",
              "status": 200,
              "checkedAt": "2026-10-04T15:41:13.479557667Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "20bf1ab35205"
            },
            {
              "url": "https://1password.com/legal/privacy",
              "kind": "privacy",
              "status": 200,
              "checkedAt": "2026-10-04T15:41:07.067811579Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "7a043d1fa57f"
            },
            {
              "url": "https://1password.com/legal/terms-of-service",
              "kind": "terms",
              "status": 200,
              "checkedAt": "2026-10-04T15:41:09.169984797Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "440d3b48cc3c"
            }
          ],
          "updatedAt": "2026-10-04T21:39:47.763242597Z"
        }
      },
      {
        "slug": "azure-mcp",
        "name": "Azure MCP Server",
        "vendor": "Microsoft",
        "vendorUrl": "https://learn.microsoft.com/en-us/azure/developer/azure-mcp-server/",
        "kind": "mcp",
        "category": "infrastructure",
        "summary": "Microsoft's official local MCP server for Azure (`@azure/mcp`, also on NuGet as Azure.Mcp).",
        "url": "https://www.anchorterminal.com/tools/azure-mcp",
        "markdownUrl": "https://www.anchorterminal.com/tools/azure-mcp.md",
        "slimMarkdownUrl": "https://www.anchorterminal.com/tools/azure-mcp.min.md",
        "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/azure-mcp.json",
        "repo": "https://github.com/microsoft/mcp",
        "license": "MIT",
        "transports": [
          "stdio",
          "streamable-http"
        ],
        "packages": [
          {
            "registry": "npm",
            "name": "@azure/mcp"
          },
          {
            "registry": "nuget",
            "name": "Azure.Mcp"
          }
        ],
        "auth": "mixed",
        "authNotes": "DefaultAzureCredential. Picks up `az login`, the Azure Developer CLI, Visual Studio or VS Code sign-ins, or a service principal from environment variables in CI. No secrets in the MCP config.",
        "pricing": "free",
        "pricingNotes": "Open source under MIT. Azure resource usage is billed by Azure as normal.",
        "priceSummary": "Free · OSS",
        "where": "local",
        "x402": {
          "level": "no",
          "evidence": "Local open-source server, no payments.",
          "endpoints": []
        },
        "toolCount": null,
        "popularity": {
          "githubStars": 3600,
          "npmWeekly": null,
          "pypiWeekly": null,
          "asOf": "2026-09-26"
        },
        "docsUrl": "https://learn.microsoft.com/en-us/azure/developer/azure-mcp-server/tools/",
        "registryName": "com.microsoft/azure",
        "capabilities": [
          "infra.azure",
          "infra.cloud"
        ],
        "tags": [
          "official",
          "open-source",
          "read-only-mode",
          "namespaces",
          "enterprise"
        ],
        "lastRelease": "2026-10-01",
        "graded": true,
        "anchor": {
          "graded": true,
          "score": 67.8,
          "grade": "B",
          "agentReady": false,
          "rank": 136,
          "ranked": true,
          "rankOf": 452,
          "categoryRank": 3,
          "methodology": "0.3",
          "run": "2026-10-01",
          "scores": {
            "ergonomics": 72,
            "maintenance": 89,
            "payments": 60,
            "reliability": 69,
            "schema": 77,
            "security": 73,
            "transparency": 77
          },
          "pending": [
            "performance",
            "tasks"
          ],
          "assessment": {
            "confidence": "medium",
            "date": "2026-10-01"
          },
          "negative": -5,
          "negativeNotes": [
            "-2: CVE-2026-26118, published 2026-03-10, CVSS 8.8. Server-side request forgery in Azure MCP Server let an authorised attacker elevate privileges over a network. Fixed and published through MSRC (https://nvd.nist.gov/vuln/detail/CVE-2026-26118).",
            "-2: CVE-2026-32211, published 2026-04-03, CVSS 9.1. Missing authentication for a critical function in Azure MCP Server let an unauthorised attacker disclose information over a network. Fixed and published through MSRC (https://nvd.nist.gov/vuln/detail/CVE-2026-32211).",
            "-1: until 3.0.0-beta.49 on 2026-10-01, `communication_email_send` and `communication_sms_send` were annotated read-only, so they stayed available under `--read-only`, an outbound send path in a mode meant to block writes. Fixed and described in the changelog (https://github.com/microsoft/mcp/blob/main/servers/Azure.Mcp.Server/CHANGELOG.md)."
          ],
          "verdict": "Entra ID through DefaultAzureCredential, so access follows RBAC and no secret sits in the MCP config. npm `latest` installs a 3.0.0 beta, and betas rename and remove tools without a notice period.",
          "strengths": [
            "Entra ID through DefaultAzureCredential, so access follows RBAC and no secret sits in the MCP config",
            "`--read-only`, `--namespace`, `--tool`, consolidated and single-tool modes for cutting the surface down",
            "Secret, connection-string and private-key reads ask the user first through elicitation",
            "Destructive, idempotent, read-only and secret metadata on every command",
            "26 releases between 8 July and 1 October 2026, each with a written changelog"
          ],
          "weaknesses": [
            "npm `latest` installs a 3.0.0 beta, and betas rename and remove tools without a notice period",
            "No confirmation step before deletes and other destructive calls",
            "Telemetry to Microsoft is on by default",
            "Two MSRC CVEs in March and April 2026, rated 8.8 and 9.1",
            "Default namespace mode still exposes about 60 tools"
          ],
          "agentNotes": [
            "Start with `--namespace \u003cone or two\u003e --read-only` for inspection and widen only when a task needs a write",
            "Pin a version instead of `@latest`, which is a prerelease",
            "Use `resiliency_*`, not `resilience_*`. The prefix changed on 22 September 2026",
            "Resolve the subscription and resource group once and pass them on every call",
            "Auth failures mean the credential chain found nothing. Run `az login` or set the service-principal variables"
          ],
          "metrics": {
            "kind": "local",
            "measured": false
          },
          "reviewCount": 2,
          "avgRating": 2.5,
          "history": [
            {
              "basis": "public evidence",
              "confidence": "medium",
              "grade": "B",
              "methodology": "0.3",
              "pending": [
                "performance",
                "tasks"
              ],
              "run": "2026-10-01",
              "runLabel": "October 2026 research run",
              "score": 67.8
            }
          ],
          "editorialScores": {
            "ergonomics": 72,
            "maintenance": 89,
            "payments": 60,
            "reliability": 69,
            "schema": 77,
            "security": 73,
            "transparency": 71
          },
          "provenanceScore": 82
        },
        "connect": {
          "claudeCode": "claude mcp add azure -- npx -y @azure/mcp@latest server start --mode namespace --namespace storage --read-only true",
          "config": {
            "mcpServers": {
              "azure": {
                "args": [
                  "-y",
                  "@azure/mcp@latest",
                  "server",
                  "start",
                  "--mode",
                  "namespace",
                  "--read-only",
                  "true"
                ],
                "command": "npx"
              }
            }
          }
        },
        "letme": {
          "capability": "https://letme.dev/infra.azure",
          "tool": "https://letme.dev/azure-mcp"
        },
        "sameCompany": [
          "azure-foundry-fine-tuning",
          "azure-ai-content-safety",
          "azure-speech-to-text",
          "azure-text-to-speech",
          "microsoft-learn-mcp",
          "playwright-mcp",
          "azure-translator",
          "microsoft-graph-calendar"
        ],
        "alsoIn": [
          "secrets"
        ],
        "area": "developer",
        "provenance": {
          "legalEntity": "Microsoft Corporation",
          "domain": "microsoft.com",
          "domainRegistered": "1991-05-02",
          "domainNote": "microsoft.com publishes a security.txt, but it passed its Expires date on 2026-09-23.",
          "endpointOnVendorDomain": null,
          "terms": "",
          "privacy": "https://microsoft.com/en-us/privacy/privacystatement",
          "statusPage": "",
          "changelog": "https://github.com/microsoft/mcp/blob/main/servers/Azure.Mcp.Server/CHANGELOG.md",
          "securityTxt": "expired",
          "checked": "2026-09-26",
          "score": 82
        },
        "pageJsonUrl": "https://www.anchorterminal.com/tools/azure-mcp.json",
        "live": {
          "slug": "azure-mcp",
          "versions": [
            {
              "registry": "github",
              "name": "microsoft/mcp",
              "version": "Template.Mcp.Server-0.0.12-alpha.6913352",
              "released": "2026-10-02",
              "seenAt": "2026-10-04T16:21:32.999265443Z"
            },
            {
              "registry": "mcp-registry",
              "name": "com.microsoft/azure",
              "version": "3.0.0-beta.48",
              "seenAt": "2026-10-03T23:29:28.630222764Z"
            },
            {
              "registry": "npm",
              "name": "@azure/mcp",
              "version": "3.0.0-beta.49",
              "seenAt": "2026-10-04T16:21:30.92740951Z"
            }
          ],
          "githubStars": 3730,
          "npmWeekly": 174590,
          "securityTxt": {
            "url": "https://microsoft.com/.well-known/security.txt",
            "state": "expired",
            "expires": "2026-09-23T16:00:00.000Z",
            "checkedAt": "2026-10-04T15:16:01.36832038Z"
          },
          "domain": {
            "domain": "microsoft.com",
            "registered": "1991-05-02",
            "source": "https://rdap.verisign.com/com/v1/domain/microsoft.com",
            "checkedAt": "2026-10-04T13:04:13.488857536Z"
          },
          "pages": [
            {
              "url": "https://raw.githubusercontent.com/microsoft/mcp/main/servers/Azure.Mcp.Server/CHANGELOG.md",
              "kind": "deprecations",
              "status": 304,
              "checkedAt": "2026-10-04T15:47:45.314617699Z",
              "changedAt": "2026-10-02T15:23:59.334024079Z",
              "fingerprint": "d48efa952555"
            },
            {
              "url": "https://microsoft.com/en-us/privacy/privacystatement",
              "kind": "privacy",
              "status": 200,
              "checkedAt": "2026-10-04T15:45:58.103662159Z",
              "changedAt": "2026-10-04T15:45:58.103662159Z",
              "fingerprint": "f00621646717"
            }
          ],
          "updatedAt": "2026-10-04T16:21:32.999265443Z"
        }
      },
      {
        "slug": "hashicorp-vault",
        "name": "HashiCorp Vault + Vault MCP Server",
        "vendor": "HashiCorp (IBM)",
        "vendorUrl": "https://developer.hashicorp.com/vault",
        "kind": "http-api",
        "category": "secrets",
        "summary": "Secrets management platform for storing credentials and controlling application access.",
        "url": "https://www.anchorterminal.com/tools/hashicorp-vault",
        "markdownUrl": "https://www.anchorterminal.com/tools/hashicorp-vault.md",
        "slimMarkdownUrl": "https://www.anchorterminal.com/tools/hashicorp-vault.min.md",
        "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/hashicorp-vault.json",
        "repo": "https://github.com/hashicorp/vault",
        "license": "BUSL-1.1 (Vault), MPL-2.0 (MCP server)",
        "transports": [
          "http",
          "stdio",
          "streamable-http"
        ],
        "packages": [],
        "auth": "mixed",
        "authNotes": "Every request carries a Vault token in `X-Vault-Token` (or as an HTTP bearer token). Machines get a token from an auth method such as AppRole, Kubernetes, JWT/OIDC, AWS, GCP, Azure, TLS certificates and more. Enterprise 2.0.3+ lets a registered agent present an OAuth 2.0 JWT from your identity provider directly, with RAR claims (RFC 9396) narrowing paths. The MCP server reads VAULT_ADDR, VAULT_TOKEN and VAULT_NAMESPACE, or takes them as headers in HTTP mode.",
        "pricing": "freemium",
        "pricingNotes": "Vault Community is free to run under the BUSL-1.1, which forbids selling a competing hosted product. HCP Vault Dedicated is hourly per cluster on the IBM price list. Development extra small $0.61644 an hour, Essentials small $1.57799, medium $3.16299, large $7.48857, Standard small $1.84299, medium $3.69099, large $9.40599, plus $72.92 a month per product client. Prices are indicative and exclude tax. Vault Enterprise self-managed is quoted, and the 2.1.0 licence added Agentic IAM terms. HCP has a $500 pay-as-you-go credit (https://www.ibm.com/products/hashicorp/pricing, https://www.hashicorp.com/en/pricing).",
        "priceSummary": "Freemium",
        "where": "local",
        "x402": {
          "level": "no",
          "endpoints": []
        },
        "toolCount": 16,
        "popularity": {
          "githubStars": 36234,
          "npmWeekly": null,
          "pypiWeekly": null,
          "asOf": "2026-09-30"
        },
        "docsUrl": "https://developer.hashicorp.com/vault/docs",
        "capabilities": [
          "secrets.store",
          "secrets.rotate",
          "secrets.machine-identity",
          "secrets.audit",
          "secrets.self-host",
          "auth.agent-identity"
        ],
        "tags": [
          "hosted",
          "self-hosted",
          "source-available",
          "freemium",
          "mcp",
          "local",
          "go",
          "enterprise",
          "eu"
        ],
        "lastRelease": "2026-09-16",
        "graded": true,
        "anchor": {
          "graded": true,
          "score": 64.4,
          "grade": "B",
          "agentReady": false,
          "rank": 184,
          "ranked": true,
          "rankOf": 452,
          "categoryRank": 7,
          "methodology": "0.3",
          "run": "2026-10-01",
          "scores": {
            "ergonomics": 64,
            "maintenance": 77,
            "payments": 30,
            "reliability": 71,
            "schema": 74,
            "security": 86,
            "transparency": 83
          },
          "pending": [
            "performance",
            "tasks"
          ],
          "assessment": {
            "confidence": "medium",
            "date": "2026-10-01"
          },
          "negative": -5,
          "negativeNotes": [
            "-4: The official Vault MCP server fixed cross-user credential inheritance through a shared MCP session ID on 2026-07-28 and an SSRF through a VAULT_ADDR query parameter on 2026-08-11, but the newest binary and Docker image are still 0.2.0 from 2025-09-24 and no advisory was published (https://github.com/hashicorp/vault-mcp-server/commits/main, https://releases.hashicorp.com/vault-mcp-server/)",
            "-1: Vault 2.0.3 (2026-06-17) fixed a LIST ACL bypass where a trailing slash skipped a more specific deny rule; fixed and documented in the changelog, so it decays (https://github.com/hashicorp/vault/blob/main/CHANGELOG.md)"
          ],
          "verdict": "Dynamic secrets with leases, so a database or cloud credential can live for one agent run and be revoked after. The MCP server's newest build is 0.2.0 from September 2025, and security fixes from July and August 2026 are unreleased.",
          "strengths": [
            "Dynamic secrets with leases, so a database or cloud credential can live for one agent run and be revoked after",
            "Path policies with explicit deny, audit devices on every edition, and Agent Registry with ceiling policies on Enterprise",
            "Auth methods for every major cloud, Kubernetes, JWT/OIDC and AppRole",
            "Three releases between 4 August and 16 September 2026 with a dated changelog that names each CVE fixed",
            "Each server generates its own OpenAPI document at /v1/sys/internal/specs/openapi"
          ],
          "weaknesses": [
            "The MCP server's newest build is 0.2.0 from September 2025, and security fixes from July and August 2026 are unreleased",
            "Agentic IAM, control groups and the OAuth resource server are Enterprise only",
            "BUSL-1.1, not an OSI licence, and HCP Vault Secrets was retired within two years of launch",
            "No llms.txt, and the only official client library is Go",
            "HCP client pricing ($72.92 a client a month) can dwarf the cluster price for many agents, and no SLA is published"
          ],
          "agentNotes": [
            "Prefer a dynamic secret (database, AWS, GCP engines) over a KV read; the lease expires with the run and revoke is one call",
            "Log in with AppRole or Kubernetes auth and keep the token for its TTL. Renew with auth/token/renew-self rather than logging in per request",
            "For KV v2, GET /v1/\u003cmount\u003e/data/\u003cpath\u003e and read data.data, and pass cas on writes so a retry can't overwrite a newer version",
            "If you must use the MCP server, build it from main rather than running the 0.2.0 image, run it over stdio, and give it a token limited to one mount",
            "Ask your operator to set enable_rate_limit_response_headers on the quota so a 429 carries Retry-After"
          ],
          "metrics": {
            "kind": "local",
            "measured": false
          },
          "reviewCount": 2,
          "avgRating": 3,
          "history": [
            {
              "basis": "public evidence",
              "confidence": "medium",
              "grade": "B",
              "methodology": "0.3",
              "pending": [
                "performance",
                "tasks"
              ],
              "run": "2026-10-01",
              "runLabel": "October 2026 research run",
              "score": 64.4
            }
          ],
          "editorialScores": {
            "ergonomics": 64,
            "maintenance": 77,
            "payments": 30,
            "reliability": 71,
            "schema": 74,
            "security": 86,
            "transparency": 65
          },
          "provenanceScore": 100
        },
        "connect": {
          "install": "docker run --rm -p 8200:8200 hashicorp/vault server -dev   # or download vault-mcp-server from releases.hashicorp.com",
          "http": "curl -H \"X-Vault-Token: $VAULT_TOKEN\" \"$VAULT_ADDR/v1/secret/data/myapp\"",
          "claudeCode": "claude mcp add vault -e VAULT_ADDR=$VAULT_ADDR -e VAULT_TOKEN=$VAULT_TOKEN -- vault-mcp-server stdio",
          "config": {
            "mcpServers": {
              "vault": {
                "args": [
                  "run",
                  "-i",
                  "--rm",
                  "-e",
                  "VAULT_ADDR",
                  "-e",
                  "VAULT_TOKEN",
                  "hashicorp/vault-mcp-server"
                ],
                "command": "docker",
                "env": {
                  "VAULT_ADDR": "${VAULT_ADDR}",
                  "VAULT_TOKEN": "${VAULT_TOKEN}"
                }
              }
            }
          }
        },
        "letme": {
          "capability": "https://letme.dev/secrets.store",
          "tool": "https://letme.dev/hashicorp-vault"
        },
        "sameCompany": [
          "terraform-mcp"
        ],
        "area": "agent-runtime",
        "unitPrices": [
          {
            "item": "HCP Vault Dedicated, product client",
            "unit": "account-month",
            "usd": 72.92,
            "note": "Per client a month, Essentials and Standard"
          }
        ],
        "provenance": {
          "legalEntity": "HashiCorp, Inc. (an IBM company)",
          "domain": "hashicorp.com",
          "domainRegistered": "2011-04-30",
          "endpointOnVendorDomain": true,
          "terms": "https://www.hashicorp.com/en/terms-of-service",
          "privacy": "https://www.hashicorp.com/en/privacy",
          "statusPage": "https://status.hashicorp.com",
          "changelog": "https://github.com/hashicorp/vault/blob/main/CHANGELOG.md",
          "securityTxt": "valid",
          "checked": "2026-10-01",
          "notes": [
            "The website terms name HashiCorp, Inc. and were last updated March 2018. The privacy policy (20 April 2026) gives HashiCorp, an IBM Company, c/o 1 North Castle Drive, Armonk, New York, and notes the IBM acquisition closed on 27 February 2025.",
            "security.txt has Contact, Policy and Encryption but no Expires field.",
            "HCP prices come from the IBM price table and are marked indicative, varying by country.",
            "status.hashicorp.com runs on incident.io. From 1 July to 1 October 2026 it posted nothing against HCP Vault Dedicated; it did post a DR cluster creation failure on HCP (6 August) and a releases.hashicorp.com outage (26 September).",
            "The Vault MCP server's newest published build is 0.2.0 (24 September 2025) on releases.hashicorp.com and Docker Hub, although its VERSION file and changelog say 0.2.1."
          ],
          "score": 100
        },
        "pageJsonUrl": "https://www.anchorterminal.com/tools/hashicorp-vault.json",
        "live": {
          "slug": "hashicorp-vault",
          "vendorStatus": {
            "page": "https://status.hashicorp.com",
            "indicator": "none",
            "summary": "All Systems Operational",
            "checkedAt": "2026-10-04T21:40:07.156524744Z"
          },
          "versions": [
            {
              "registry": "github",
              "name": "hashicorp/vault",
              "version": "v2.1.1",
              "released": "2026-09-16",
              "seenAt": "2026-10-04T16:29:29.320950791Z"
            }
          ],
          "githubStars": 36339,
          "securityTxt": {
            "url": "https://hashicorp.com/.well-known/security.txt",
            "state": "unknown",
            "checkedAt": "2026-10-04T15:16:00.556489725Z"
          },
          "domain": {
            "domain": "hashicorp.com",
            "registered": "2011-04-30",
            "source": "https://rdap.verisign.com/com/v1/domain/hashicorp.com",
            "checkedAt": "2026-10-04T13:10:23.718306751Z"
          },
          "pages": [
            {
              "url": "https://raw.githubusercontent.com/hashicorp/vault/main/CHANGELOG.md",
              "kind": "deprecations",
              "status": 304,
              "checkedAt": "2026-10-04T15:47:41.235618427Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "0620845f2f7e"
            },
            {
              "url": "https://www.ibm.com/support/pages/hcp-vault-secrets-end-life",
              "kind": "deprecations",
              "status": 304,
              "checkedAt": "2026-10-04T15:50:50.575718841Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "e24e2e2b51c3"
            },
            {
              "url": "https://www.hashicorp.com/en/pricing",
              "kind": "pricing",
              "status": 429,
              "checkedAt": "2026-10-04T15:50:36.37620806Z",
              "changedAt": "0001-01-01T00:00:00Z"
            },
            {
              "url": "https://www.ibm.com/products/hashicorp/pricing",
              "kind": "pricing",
              "status": 200,
              "checkedAt": "2026-10-04T15:50:46.127664694Z",
              "changedAt": "0001-01-01T00:00:00Z",
              "fingerprint": "0e262eb503c4"
            },
            {
              "url": "https://www.hashicorp.com/en/privacy",
              "kind": "privacy",
              "status": 429,
              "checkedAt": "2026-10-04T15:50:38.389849123Z",
              "changedAt": "0001-01-01T00:00:00Z"
            },
            {
              "url": "https://www.hashicorp.com/en/terms-of-service",
              "kind": "terms",
              "status": 429,
              "checkedAt": "2026-10-04T15:50:40.386204192Z",
              "changedAt": "0001-01-01T00:00:00Z"
            }
          ],
          "updatedAt": "2026-10-04T21:40:07.156524744Z"
        }
      },
      {
        "slug": "bitwarden-secrets-manager",
        "name": "Bitwarden Secrets Manager",
        "vendor": "Bitwarden",
        "vendorUrl": "https://bitwarden.com/products/secrets-manager/",
        "kind": "sdk",
        "category": "secrets",
        "summary": "End-to-end encrypted secrets store from the Bitwarden password manager company.",
        "url": "https://www.anchorterminal.com/tools/bitwarden-secrets-manager",
        "markdownUrl": "https://www.anchorterminal.com/tools/bitwarden-secrets-manager.md",
        "slimMarkdownUrl": "https://www.anchorterminal.com/tools/bitwarden-secrets-manager.min.md",
        "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/bitwarden-secrets-manager.json",
        "repo": "https://github.com/bitwarden/sdk-sm",
        "license": "Bitwarden's own SDK licence (SDK and bws), GPL-3.0 (Password Manager MCP server), platform closed",
        "transports": [
          "http"
        ],
        "remoteUrl": "https://api.bitwarden.com",
        "packages": [
          {
            "registry": "npm",
            "name": "@bitwarden/sdk-napi"
          },
          {
            "registry": "pypi",
            "name": "bitwarden-sdk"
          }
        ],
        "auth": "api-key",
        "authNotes": "A machine account access token (`0.\u003cuuid\u003e.\u003cclient secret\u003e:\u003cencryption key\u003e`) goes in `BWS_ACCESS_TOKEN` or `--access-token`. The SDK exchanges the client secret at identity.bitwarden.com, then decrypts secrets locally with the key embedded in the token, so a plain curl can't read a value. Tokens are shown once, never stored server-side, and can expire on a date you set (default never).",
        "pricing": "freemium",
        "pricingNotes": "Secrets Manager has a free plan (2 users, 3 projects, 3 machine accounts, unlimited secrets, no event logs) and paid Teams and Enterprise plans. Teams $6 per user a month with 20 machine accounts included, Enterprise $12 per user a month with 50, and $1 a month per extra machine account on either. Secret storage, projects and users are unlimited on paid plans, and event logs come with Teams and Enterprise. A 14-day trial is on the pricing page; neither page says whether a card is needed. The product page lists self-hosting on Enterprise, while the plans help page still says coming soon (https://bitwarden.com/pricing/business/, https://bitwarden.com/help/secrets-manager-plans/).",
        "priceSummary": "$6 / seat-mo",
        "where": "hosted",
        "x402": {
          "level": "no",
          "endpoints": []
        },
        "toolCount": null,
        "popularity": {
          "githubStars": 480,
          "npmWeekly": 24038,
          "pypiWeekly": 25331,
          "asOf": "2026-09-30"
        },
        "docsUrl": "https://bitwarden.com/help/secrets-manager-overview/",
        "capabilities": [
          "secrets.store",
          "secrets.machine-identity",
          "secrets.audit",
          "secrets.self-host"
        ],
        "tags": [
          "hosted",
          "self-hosted",
          "freemium",
          "source-available",
          "typescript",
          "python",
          "go",
          "enterprise",
          "eu"
        ],
        "lastRelease": "2026-05-22",
        "graded": true,
        "anchor": {
          "graded": true,
          "score": 57.1,
          "grade": "C",
          "agentReady": false,
          "rank": 297,
          "ranked": true,
          "rankOf": 452,
          "categoryRank": 8,
          "methodology": "0.3",
          "run": "2026-10-01",
          "scores": {
            "ergonomics": 52,
            "maintenance": 36,
            "payments": 25,
            "reliability": 71,
            "schema": 53,
            "security": 76,
            "transparency": 71
          },
          "pending": [
            "performance",
            "tasks"
          ],
          "assessment": {
            "confidence": "medium",
            "date": "2026-10-01"
          },
          "negative": 0,
          "verdict": "End-to-end encrypted, decrypted only on the client that holds the token. No release since 22 May 2026, and the npm SDK is still 1.0.0 from September 2024.",
          "strengths": [
            "End-to-end encrypted, decrypted only on the client that holds the token",
            "Machine accounts at $1 a month each, 3 on the free plan, with Can read or Can read, write per project",
            "Per-machine-account event logs of secret access, retained indefinitely, on Teams and Enterprise",
            "SOC 2 Type II, ISO 27001 and a HackerOne bounty",
            "US or EU cloud, with self-hosting on Enterprise"
          ],
          "weaknesses": [
            "No release since 22 May 2026, and the npm SDK is still 1.0.0 from September 2024",
            "33 open issues, mostly bugs, including a Python SDK segfault open since July 2025",
            "Revoked tokens keep working for up to an hour on already-authenticated machines",
            "No rotation, dynamic secrets, workload identity login or MCP server for Secrets Manager",
            "SDK and CLI under Bitwarden's own SDK licence, and no OpenAPI for the secrets API"
          ],
          "agentNotes": [
            "Create one machine account per agent with Can read on one project, and give its token an expiry date rather than the default of never",
            "Run the agent under `bws run -- \u003ccmd\u003e` so secrets arrive as environment variables and aren't written to disk or into the context",
            "Fetch with `bws secret list \u003cproject-id\u003e --output json` once per run; `bws secret get` needs the secret's UUID, not its name",
            "Set BWS_SERVER_URL for an EU organisation or a self-hosted server; the default is the US cloud",
            "Rotate the secret's value as well as revoking the token in an emergency, since a live session can read for up to an hour"
          ],
          "metrics": {
            "kind": "remote",
            "measured": false
          },
          "reviewCount": 2,
          "avgRating": 2.5,
          "history": [
            {
              "basis": "public evidence",
              "confidence": "medium",
              "grade": "C",
              "methodology": "0.3",
              "pending": [
                "performance",
                "tasks"
              ],
              "run": "2026-10-01",
              "runLabel": "October 2026 research run",
              "score": 57.1
            }
          ],
          "editorialScores": {
            "ergonomics": 52,
            "maintenance": 36,
            "payments": 25,
            "reliability": 71,
            "schema": 53,
            "security": 76,
            "transparency": 52
          },
          "provenanceScore": 90
        },
        "connect": {
          "install": "cargo install bws --locked   # or: curl https://bws.bitwarden.com/install | sh, npm install @bitwarden/sdk-napi, pip install bitwarden-sdk",
          "http": "export BWS_ACCESS_TOKEN=\"$BWS_ACCESS_TOKEN\"\nbws secret list \"$BWS_PROJECT_ID\"   # values are end-to-end encrypted, so the CLI or SDK decrypts; plain curl can't"
        },
        "letme": {
          "capability": "https://letme.dev/secrets.store",
          "tool": "https://letme.dev/bitwarden-secrets-manager"
        },
        "area": "agent-runtime",
        "unitPrices": [
          {
            "item": "Secrets Manager, Teams",
            "unit": "seat-month",
            "usd": 6,
            "note": "20 machine accounts included"
          },
          {
            "item": "Secrets Manager, Enterprise",
            "unit": "seat-month",
            "usd": 12,
            "note": "50 machine accounts included"
          },
          {
            "item": "Extra machine account",
            "unit": "account-month",
            "usd": 1
          }
        ],
        "provenance": {
          "legalEntity": "Bitwarden Inc. (terms name 8bit Solutions LLC, wholly owned by Bitwarden Inc.)",
          "domain": "bitwarden.com",
          "domainRegistered": "2015-11-16",
          "endpointOnVendorDomain": true,
          "terms": "https://bitwarden.com/terms/",
          "privacy": "https://bitwarden.com/privacy/",
          "statusPage": "https://status.bitwarden.com",
          "changelog": "https://github.com/bitwarden/sdk-sm/releases",
          "securityTxt": "none",
          "checked": "2026-10-01",
          "notes": [
            "Terms dated 1 June 2017 name 8bit Solutions LLC, a Delaware company wholly owned by Bitwarden Inc. The privacy policy (revised April 2024) gives Bitwarden Inc., 1 North Calle Cesar Chavez, Suite 102, Santa Barbara, CA 93103, with data stored primarily in the EEA and United States.",
            "bitwarden.com/.well-known/security.txt returned 404 on 30 September 2026; the SDK repository's SECURITY.md points to HackerOne.",
            "status.bitwarden.com runs on Hund.io. Since 3 July 2026 it shows five planned maintenance windows and one unscheduled incident, elevated US API error rates for 38 minutes on 29 September.",
            "The compliance page claims SOC 2 Type II, SOC 3, ISO 27001 and HIPAA, with data on Azure in the US or EU.",
            "The crate changelogs in sdk-sm stop at 1.0.0 (September 2024); later releases are only described on GitHub."
          ],
          "score": 90
        },
        "pageJsonUrl": "https://www.anchorterminal.com/tools/bitwarden-secrets-manager.json",
        "live": {
          "slug": "bitwarden-secrets-manager",
          "probe": {
            "target": "https://api.bitwarden.com",
            "method": "get",
            "lastAt": "2026-10-04T21:48:23.927633373Z",
            "lastOk": true,
            "lastStatus": 404,
            "lastMs": 128,
            "authRequired": false,
            "uptime24h": 98.53,
            "uptime30d": 97.26,
            "p50ms24h": 131,
            "p95ms24h": 316,
            "samples24h": 272,
            "samples30d": 875,
            "days": [
              {
                "date": "2026-10-01",
                "probes": 109,
                "ok": 102
              },
              {
                "date": "2026-10-02",
                "probes": 248,
                "ok": 239
              },
              {
                "date": "2026-10-03",
                "probes": 271,
                "ok": 265
              },
              {
                "date": "2026-10-04",
                "probes": 247,
                "ok": 245
              }
            ]
          },
          "vendorStatus": {
            "page": "https://status.bitwarden.com",
            "indicator": "unknown",
            "summary": "no machine-readable status found",
            "checkedAt": "2026-10-04T21:39:50.88623142Z"
          },
          "versions": [
            {
              "registry": "github",
              "name": "bitwarden/sdk-sm",
              "version": "python-v2.1.0",
              "released": "2026-05-21",
              "seenAt": "2026-10-04T16:22:18.502566508Z"
            },
            {
              "registry": "npm",
              "name": "@bitwarden/sdk-napi",
              "version": "1.0.0",
              "seenAt": "2026-10-04T16:22:17.909661383Z"
            },
            {
              "registry": "pypi",
              "name": "bitwarden-sdk",
              "version": "2.1.0",
              "released": "2026-05-21",
              "seenAt": "2026-10-04T16:22:18.317866887Z"
            }
          ],
          "githubStars": 480,
          "npmWeekly": 25074,
          "pypiWeekly": 27867,
          "securityTxt": {
            "url": "https://bitwarden.com/.well-known/security.txt",
            "state": "none",
            "checkedAt": "2026-10-04T15:15:46.220509573Z"
          },
          "domain": {
            "domain": "bitwarden.com",
            "registered": "2015-11-16",
            "source": "https://rdap.verisign.com/com/v1/domain/bitwarden.com",
            "checkedAt": "2026-10-04T13:03:43.146799125Z"
          },
          "pages": [
            {
              "url": "https://bitwarden.com/pricing/business/",
              "kind": "pricing",
              "status": 304,
              "checkedAt": "2026-10-04T15:41:30.968841046Z",
              "changedAt": "2026-10-03T15:29:42.809015327Z",
              "fingerprint": "8d0a67e9a051"
            },
            {
              "url": "https://bitwarden.com/privacy/",
              "kind": "privacy",
              "status": 200,
              "checkedAt": "2026-10-04T15:41:32.998627256Z",
              "changedAt": "2026-10-04T15:41:32.998627256Z",
              "fingerprint": "612dca4ba267"
            },
            {
              "url": "https://bitwarden.com/terms/",
              "kind": "terms",
              "status": 304,
              "checkedAt": "2026-10-04T15:41:35.010005656Z",
              "changedAt": "2026-10-03T15:29:46.855070037Z",
              "fingerprint": "662bff2efe7c"
            }
          ],
          "updatedAt": "2026-10-04T21:48:23.927633373Z"
        }
      }
    ]
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/categories/secrets",
    "json": "https://www.anchorterminal.com/categories/secrets.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/categories/secrets.md",
    "slim": "https://www.anchorterminal.com/categories/secrets.min.md"
  },
  "markdown": "Stores for API keys and other secrets that an agent or its runtime reads at call time, instead of keeping them in prompts, config files or environment dumps. Compared on access controls, rotation, audit, SDKs and self-hosting.\n\n- Tools ranked: 9 · agent-ready (BB or better): 5 · accept x402: 0 · hosted endpoints: 6 · desk reviews by the panel: 36\n- JSON: https://www.anchorterminal.com/api/v1/tools.json (list) · https://www.anchorterminal.com/api/v1/rankings.json (ranked) · https://www.anchorterminal.com/api/v1/x402.json (payable) · https://www.anchorterminal.com/api/v1/capabilities.json (by capability)\n- Grades run AA, A, BB, B, C, D, E, F · methodology: https://www.anchorterminal.com/benchmark/\n\n- Capabilities in this category: secrets.store, secrets.rotate, secrets.machine-identity, secrets.audit, secrets.self-host\n- https://letme.dev/secrets.store picks the top-graded tool in this list and says how to call it direct; calling through letme comes later (https://www.anchorterminal.com/letme/index.md)\n\n## Ranking\n\n| # | Tool | Vendor | Kind | Category | Grade | Score | Confidence | x402 | Auth | Where | Reviews | Page |\n| --- | --- | --- | --- | --- | --- | --- | --- | --- | --- | --- | --- | --- |\n| 4 | Infisical | Infisical | HTTP API | Secrets | A | 81.9 | medium | no | OAuth or key | hosted + local | 3.8/5 (8) | https://www.anchorterminal.com/tools/infisical.md |\n| 15 | AWS Secrets Manager | Amazon Web Services | HTTP API | Secrets | A | 78.1 | medium | no | OAuth or key | hosted | 3.9/5 (8) | https://www.anchorterminal.com/tools/aws-secrets-manager.md |\n| 26 | Google Cloud Secret Manager | Google Cloud | HTTP API | Secrets | BB | 76.6 | medium | no | OAuth | hosted | 3.6/5 (8) | https://www.anchorterminal.com/tools/google-secret-manager.md |\n| 55 | Akeyless (SecretlessAI and MCP server) | Akeyless | Model platform | Secrets | BB | 73.7 | medium | no | OAuth or key | hosted + local | 3/5 (2) | https://www.anchorterminal.com/tools/akeyless.md |\n| 79 | Doppler | Doppler | HTTP API | Secrets | BB | 71.6 | medium | no | OAuth or key | hosted + local | 3/5 (2) | https://www.anchorterminal.com/tools/doppler.md |\n| 104 | 1Password service accounts, SDKs and Environments MCP | 1Password | Model platform | Secrets | B | 69.9 | medium | no | OAuth or key | local | 3.5/5 (2) | https://www.anchorterminal.com/tools/1password.md |\n| 136 | Azure MCP Server | Microsoft | MCP server | Infra | B | 67.8 | medium | no | OAuth or key | local | 2.5/5 (2) | https://www.anchorterminal.com/tools/azure-mcp.md |\n| 184 | HashiCorp Vault + Vault MCP Server | HashiCorp (IBM) | HTTP API | Secrets | B | 64.4 | medium | no | OAuth or key | local | 3/5 (2) | https://www.anchorterminal.com/tools/hashicorp-vault.md |\n| 297 | Bitwarden Secrets Manager | Bitwarden | SDK + MCP | Secrets | C | 57.1 | medium | no | API key | hosted | 2.5/5 (2) | https://www.anchorterminal.com/tools/bitwarden-secrets-manager.md |\n\nScores are from public evidence against the published checklist (https://www.anchorterminal.com/benchmark/), with Performance and Task success pending. p95 latency and context cost come from our probes, which haven't run yet.\n\n## Summaries\n\n### 4. Infisical, A (81.9)\n\nOpen-source secrets manager with machine identities (Universal Auth, OIDC, AWS, GCP, Azure, Kubernetes, SPIFFE), dynamic secrets, rotation and audit logs, hosted in the US or EU or self-hosted. Agent Vault and Agent Proxy attach credentials at the proxy, so the agent's context never contains them. Free has no audit logs, Pro keeps them 30 days, and dynamic secrets need Advanced at $40 an identity a month.\n\n- Page: https://www.anchorterminal.com/tools/infisical · Markdown: https://www.anchorterminal.com/tools/infisical.md · JSON: https://www.anchorterminal.com/api/v1/tools/infisical.json\n- Capabilities: secrets.store, secrets.rotate, secrets.machine-identity, secrets.audit, secrets.self-host, auth.agent-identity · endpoint: `https://app.infisical.com/api`\n\n### 15. AWS Secrets Manager, A (78.1)\n\nManaged secrets store priced per secret and per API call, with IAM for access, KMS for encryption, CloudTrail for audit, cross-region replication and rotation either managed (RDS, Aurora, DocumentDB, Redshift) or by a Lambda function you own. IAM roles support access without long-lived credentials on AWS compute services. Each API call is billed, making caching relevant to frequent reads.\n\n- Page: https://www.anchorterminal.com/tools/aws-secrets-manager · Markdown: https://www.anchorterminal.com/tools/aws-secrets-manager.md · JSON: https://www.anchorterminal.com/api/v1/tools/aws-secrets-manager.json\n- Capabilities: secrets.store, secrets.rotate, secrets.machine-identity, secrets.audit, infra.aws · endpoint: `https://secretsmanager.us-east-1.amazonaws.com`\n\n### 26. Google Cloud Secret Manager, BB (76.6)\n\nGoogle Cloud's managed service for storing and accessing application secrets. Workload identity on GKE, Cloud Run and GCE, so no key in the agent, and API keys are refused. Managed rotation only covers Cloud SQL; other rotation is a Pub/Sub notification you handle.\n\n- Page: https://www.anchorterminal.com/tools/google-secret-manager · Markdown: https://www.anchorterminal.com/tools/google-secret-manager.md · JSON: https://www.anchorterminal.com/api/v1/tools/google-secret-manager.json\n- Capabilities: secrets.store, secrets.rotate, secrets.machine-identity, secrets.audit, infra.cloud · endpoint: `https://secretmanager.googleapis.com/v1`\n\n### 55. Akeyless (SecretlessAI and MCP server), BB (73.7)\n\nSaaS secrets and machine-identity platform with a self-hosted Gateway that brokers access. Gateway-brokered SecretlessAI and a runtime-authority MCP server with 4 tools that return results, not credentials. No published prices above the free plan; clients and transactions are metered with overage billed at the end of a 12-month contract.\n\n- Page: https://www.anchorterminal.com/tools/akeyless · Markdown: https://www.anchorterminal.com/tools/akeyless.md · JSON: https://www.anchorterminal.com/api/v1/tools/akeyless.json\n- Capabilities: secrets.store, secrets.rotate, secrets.machine-identity, secrets.audit, auth.agent-identity · endpoint: `https://api.akeyless.io`\n\n### 79. Doppler, BB (71.6)\n\nHosted secrets manager organised by project, environment and config. Service tokens bound to one config, read-only by default, with --max-age expiry. Dynamic secrets and on-prem are Enterprise only, and Developer has no service accounts.\n\n- Page: https://www.anchorterminal.com/tools/doppler · Markdown: https://www.anchorterminal.com/tools/doppler.md · JSON: https://www.anchorterminal.com/api/v1/tools/doppler.json\n- Capabilities: secrets.store, secrets.rotate, secrets.machine-identity, secrets.audit · endpoint: `https://api.doppler.com/v3`\n\n### 104. 1Password service accounts, SDKs and Environments MCP, B (69.9)\n\nPassword manager with a developer layer for agents. Service accounts scoped per vault to read, write or share, with an optional expiry and permissions that can't be changed after creation. Teams, Families and Individual get 1,000 service account reads an hour per token, and the 429 carries no Retry-After.\n\n- Page: https://www.anchorterminal.com/tools/1password · Markdown: https://www.anchorterminal.com/tools/1password.md · JSON: https://www.anchorterminal.com/api/v1/tools/1password.json\n- Capabilities: secrets.store, secrets.machine-identity, secrets.audit\n\n### 136. Azure MCP Server, B (67.8)\n\nMicrosoft's official local MCP server for Azure (`@azure/mcp`, also on NuGet as Azure.Mcp). Entra ID through DefaultAzureCredential, so access follows RBAC and no secret sits in the MCP config. npm `latest` installs a 3.0.0 beta, and betas rename and remove tools without a notice period.\n\n- Page: https://www.anchorterminal.com/tools/azure-mcp · Markdown: https://www.anchorterminal.com/tools/azure-mcp.md · JSON: https://www.anchorterminal.com/api/v1/tools/azure-mcp.json\n- Capabilities: infra.azure, infra.cloud\n\n### 184. HashiCorp Vault + Vault MCP Server, B (64.4)\n\nSecrets management platform for storing credentials and controlling application access. Dynamic secrets with leases, so a database or cloud credential can live for one agent run and be revoked after. The MCP server's newest build is 0.2.0 from September 2025, and security fixes from July and August 2026 are unreleased.\n\n- Page: https://www.anchorterminal.com/tools/hashicorp-vault · Markdown: https://www.anchorterminal.com/tools/hashicorp-vault.md · JSON: https://www.anchorterminal.com/api/v1/tools/hashicorp-vault.json\n- Capabilities: secrets.store, secrets.rotate, secrets.machine-identity, secrets.audit, secrets.self-host, auth.agent-identity\n\n### 297. Bitwarden Secrets Manager, C (57.1)\n\nEnd-to-end encrypted secrets store from the Bitwarden password manager company. End-to-end encrypted, decrypted only on the client that holds the token. No release since 22 May 2026, and the npm SDK is still 1.0.0 from September 2024.\n\n- Page: https://www.anchorterminal.com/tools/bitwarden-secrets-manager · Markdown: https://www.anchorterminal.com/tools/bitwarden-secrets-manager.md · JSON: https://www.anchorterminal.com/api/v1/tools/bitwarden-secrets-manager.json\n- Capabilities: secrets.store, secrets.machine-identity, secrets.audit, secrets.self-host · endpoint: `https://api.bitwarden.com`\n\n## How we test this category\n\nAn agent runtime reads a key at call time with a scoped machine identity, the key is rotated mid-run and access is then revoked. We check the scoping, how rotation lands, what the audit log records and how long each read takes. This test hasn't run yet, so Task success is pending and the grades here come from the categories assessed from public evidence.\n\n## Indexed, not reviewed (30)\n\nSorted into this category from public catalogues, with facts and our own checks but no score, grade or rank (https://www.anchorterminal.com/indexed/index.md).\n\n| Listing | Kind | What it does | Why it's here |\n| --- | --- | --- | --- |\n| [advisorfinder.com MCP server](https://www.anchorterminal.com/tools/advisorfinder-mcp.md) | MCP server | Search and vet SEC-registered financial advisors: profiles, disclosures, firm fees, credentials. | vendor's own |\n| [aep](https://www.anchorterminal.com/tools/focusgts-aep.md) | MCP server | Full-CRUD server for AEP, Journey Optimizer and CJA. 61 tools from one OAuth credential. | vendor's own |\n| [AtlasYield](https://www.anchorterminal.com/tools/atlasyield-mcp.md) | MCP server | DeFi vault judgment for agents: 16-factor Atlas Score, route survival, blowup alerts. Read-only. | vendor's own |\n| [correctover.com MCP server](https://www.anchorterminal.com/tools/correctover-mcp-server.md) | MCP server | MCP runtime security. 22µs validation, 97% self-healing. Detects RCE, SSRF, credential hijacking. | vendor's own |\n| [designvault](https://www.anchorterminal.com/tools/designvault.md) | MCP server | Search, browse and manage your DesignVault design-asset library from any MCP client. | vendor's own |\n| [Draugr](https://www.anchorterminal.com/tools/draugr.md) | MCP server | Security scanning for AI agents: SAST, SCA, secrets, IaC, DAST, ranked by real risk. | vendor's own |\n| [envcp](https://www.anchorterminal.com/tools/fentz-envcp.md) | MCP server | Encrypted environment variable vault with AI access policies, keeping secrets safe from AI agents. | vendor's own |\n| [Flare](https://www.anchorterminal.com/tools/flarehq-security.md) | MCP server | Scan a running app or repo for leaked secrets, exposed routes and open RLS, and verify live keys | vendor's own |\n| [Graneth](https://www.anchorterminal.com/tools/graneth-mcp-server.md) | MCP server | Pre-flight check for AI coding agents: hallucinated packages + secrets, 6 ecosystems, no account. | vendor's own |\n| [hush](https://www.anchorterminal.com/tools/royashbrook-hush.md) | MCP server | A secret store for AI agents: the agent never sees the plaintext. | vendor's own |\n| [IdentArk Gateway](https://www.anchorterminal.com/tools/identark-gateway.md) | MCP server | Zero-secret MCP gateway for AI agents: risk-scored, audited calls with human-in-the-loop approval. | vendor's own |\n| [jikida.io MCP server](https://www.anchorterminal.com/tools/jikida-mcp.md) | MCP server | Security tools for your AI: scan, pentest, check headers, guard code and scan repos for secrets. | vendor's own |\n| [Kolonie AI](https://www.anchorterminal.com/tools/kolonie.md) | MCP server | A colony of AI citizens: join with no credential, prove skills, earn, vote on the rules. | vendor's own |\n| [marchward.ai MCP server](https://www.anchorterminal.com/tools/marchward-mcp-server.md) | MCP server | Runtime authority for AI agents: credential mediation, spend cap, approval gates, audit log. | vendor's own |\n| [Opzyai Security Check](https://www.anchorterminal.com/tools/opzyai-mcp.md) | MCP server | Local-first security check for AI coding agents: secrets, .env exposure, git-history leaks, CVEs. | vendor's own |\n| [paysafe](https://www.anchorterminal.com/tools/paysafe-agent-paysafe.md) | MCP server | Payment firewall for x402: scans for replay, overpayment, PII/secret leaks, prompt-injection. | vendor's own |\n| [Philidor DeFi Vault Risk Analytics](https://www.anchorterminal.com/tools/philidor-defi-vaults.md) | MCP server | Search 700+ DeFi vaults, compare risk scores, analyze protocols. No API key needed. | vendor's own |\n| [SEAL](https://www.anchorterminal.com/tools/seal-mcp.md) | MCP server | Large files and secrets between people and agents, never through the chat or the model. | vendor's own, widely used |\n| [seekrit (local crypto plane)](https://www.anchorterminal.com/tools/seekrit-mcp.md) | MCP server | Zero-knowledge secrets manager — local crypto-plane MCP server: decrypts and injects secrets. | vendor's own |\n| [ShipSafe — Independent security verification](https://www.anchorterminal.com/tools/ship-safe-scanner.md) | MCP server | Independent security review for AI-built apps: exposed secrets, broken auth, unsafe data access. | vendor's own |\n| [Skarn](https://www.anchorterminal.com/tools/getskarn-skarn.md) | MCP server | Scans AI coding sessions and assistant configs for leaked secrets and risky hooks; local, redacted | vendor's own |\n| [speedvault.io MCP server](https://www.anchorterminal.com/tools/speedvault-mcp.md) | MCP server | Run web performance audits, get code-level fixes, crawl for SEO, and read real-user Core Web Vitals. | vendor's own |\n| [TAP](https://www.anchorterminal.com/tools/human-tap.md) | MCP server | Credential isolation for AI agents: placeholder secrets, policy checks, optional human approval. | vendor's own |\n| [Trestle](https://www.anchorterminal.com/tools/trestlescan-trestle.md) | MCP server | Detects leaked secrets (API keys, tokens, private keys) in source code. | vendor's own |\n| [Trusty Squire](https://www.anchorterminal.com/tools/trustysquire-trusty-squire.md) | MCP server | Provision, ship, and pay from your coding agent — keys and cards never leave the vault. | vendor's own, widely used |\n| [unmarking](https://www.anchorterminal.com/tools/unmarking.md) | MCP server | Inspect and remove C2PA content credentials from AI-generated images, video and audio. Free, no key. | vendor's own |\n| [Uplink](https://www.anchorterminal.com/tools/uplink.md) | MCP server | Automate a real, logged-in browser on your own device — no stored credentials, no bot detection. | vendor's own |\n| [vault-knowledge](https://www.anchorterminal.com/tools/seanwinslow-vault-knowledge.md) | MCP server | Read-only MCP over a vault's typed knowledge graph: concept search, contradictions, article fetch. | vendor's own |\n| [wallet](https://www.anchorterminal.com/tools/metamuse-wallet.md) | MCP server | A muse's wallet on Robinhood Chain: stock tokens, USDG payments via rh777, vaults, on-chain ceiling. | vendor's own |\n| [Yault AESP](https://www.anchorterminal.com/tools/yault-aesp.md) | MCP server | Crypto payments for the agent economy — policy-gated vault operations under human control | vendor's own |\n\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-04",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.3",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Terminal",
        "url": "https://www.anchorterminal.com/tools/"
      },
      {
        "name": "Secrets \u0026 credential vaults",
        "url": ""
      }
    ],
    "description": "9 secrets \u0026 credential vaults ranked by the Anchor benchmark. Leader Infisical (A). Stores for API keys and other secrets that an agent or its runtime reads at call time, instead of keeping them in prompts, config files or environment dumps. Compared on access controls, rotation, audit, SDKs and self-hosting.",
    "facts": [
      "Infisical A",
      "AWS Secrets Manager A",
      "Google Cloud Secret Manager BB"
    ],
    "h1": "Secrets managers and credential vaults for agents",
    "image": "https://www.anchorterminal.com/assets/og/categories-secrets.png",
    "path": "/categories/secrets",
    "published": "",
    "section": "tools",
    "title": "Secrets managers and credential vaults for agents, ranked",
    "toc": null,
    "updated": "2026-10-04",
    "url": "https://www.anchorterminal.com/categories/secrets"
  },
  "tokens": {
    "markdown": 4200,
    "slim": 530
  },
  "version": 1
}
