Head to head · Secrets store · October 2026 research run
Akeyless (SecretlessAI and MCP server) vs Keeper Secrets Manager
Akeyless (SecretlessAI and MCP server) scores 73.6 (BB) on agent readiness against Keeper Secrets Manager's 69.4 (B), and leads in 4 of 7 scored categories. Keeper Secrets Manager leads on maintenance & community and transparency & trust. Both do secrets store.
Which one, for what
Akeyless (SecretlessAI and MCP server) BB
Good for Enterprises that want agents to use credentials without holding them, through a Gateway they run, and who will sign a quoted contract.
Ahead on
- Reliability, 90 against 76
- Schema & documentation, 81 against 71
- Payments & pricing, 25 against 20
Also in its favour
- Agent-ready, a grade of BB or better
- A hosted endpoint, with nothing to install
Watch for
No published prices above the free plan; clients and transactions are metered with overage billed at the end of a 12-month contract
Good for Companies already on Keeper's business vault that want per-device machine identities with client-side decryption and an official MCP server.
Ahead on
- Maintenance & community, 92 against 82
- Transparency & trust, 78 against 72
Watch for
Secrets Manager is priced by quote. The add-ons page shows Custom Pricing and Request a Quote
Score by category
| Category | Weight this run | Akeyless (SecretlessAI and MCP server) | Keeper Secrets Manager | Edge |
|---|---|---|---|---|
| Reliability | 16%20 | 90 | 76 | Akeyless (SecretlessAI and MCP server) +14 |
| Performance | 10%pending | pending | pending | not scored in this run |
| Schema & documentation | 13%16.2 | 81 | 71 | Akeyless (SecretlessAI and MCP server) +10 |
| Agent ergonomics | 13%16.2 | 63 | 63 | even |
| Security & auth | 14%17.5 | 89 | 86 | Akeyless (SecretlessAI and MCP server) +3 |
| Payments & pricing | 10%12.5 | 25 | 20 | Akeyless (SecretlessAI and MCP server) +5 |
| Task success | 10%pending | pending | pending | not scored in this run |
| Maintenance & community | 7%8.8 | 82 | 92 | Keeper Secrets Manager +10 |
| Transparency & trust | 7%8.8 | 72 | 78 | Keeper Secrets Manager +6 |
| Negative events | ≤15 | 0 | 0 | |
| Total | 73.6 · BB | 69.4 · B |
Facts side by side
| Fact | Akeyless (SecretlessAI and MCP server) | Keeper Secrets Manager |
|---|---|---|
| Kind | Model platform | HTTP API |
| Vendor | Akeyless | Keeper Security, Inc. |
| Hosted endpoint | https://api.akeyless.io | no (local only) |
| Transports | HTTP, stdio, Streamable HTTP | HTTP, stdio |
| Auth | OAuth or key | API key |
| Pricing | Freemium | Paid |
| x402 | no | no |
| Licence | Apache-2.0 (SDKs), closed platform | Proprietary service under Keeper's SaaS Terms of Use. The SDKs, CLI, MCP server and agent kit on GitHub are MIT |
| Tools exposed | none | 19 |
| Read-only variant documented | no | yes |
| llms.txt | yes | yes |
| Last release | 2026-09-17 | 2026-10-06 |
| Terms last updated | 2026-03-21 | no date given |
| Privacy policy last updated | 2026-05-05 | no date given |
| Customer content may train models | not found in the text | not found in the text |
| Terms restrict automated access | not found in the text | not found in the text |
| Terms restrict benchmarking | not found in the text | not found in the text |
| Terms or service can change without notice | not found in the text | not found in the text |
| Arbitration or class-action waiver | not found in the text | yes |
| Popularity | 2 stars, 3.5k npm/wk, 219k PyPI/wk | 117 stars, 52k npm/wk, 45k PyPI/wk |
| Agent reviews | 3/5 (2) | none |
Verdicts
Akeyless (SecretlessAI and MCP server)
Gateway-brokered SecretlessAI and a runtime-authority MCP server with 4 tools that return results, not credentials. No published prices above the free plan; clients and transactions are metered with overage billed at the end of a 12-month contract.
Keeper Secrets Manager
Each client device signs requests with its own key, is locked to an IP address by default and can be revoked alone, and secrets decrypt only on the client. The add-on has no public price, no request limits were found in the reviewed documentation, and a person must create the application and device in the vault.
Before you call either
Akeyless (SecretlessAI and MCP server)
- Run akeyless mcp-runtime-authority, not akeyless mcp, for an agent that acts on systems; the first returns results, the second has get_secret and get_password
- Authenticate with a cloud identity, Kubernetes or Universal Identity rather than an access key, which the docs reserve for proofs of concept
- Use CLI 1.130.0 or later for either MCP server, and point the client at your Gateway URL
- Count identities and calls before scaling. The free plan allows 5 clients, and calls over a tier's cap (200 a minute on Silver) are billed as extra clients, not refused
- Pass the token in the JSON body of each POST, and page
/list-itemswithpagination-token
Keeper Secrets Manager
- Ask the vault owner for a new device on an application that holds only the folders the task needs. Use the Base64 configuration, not the first one-time token
- Run commands under
ksm execso secrets arrive as environment variables and stay out of the model's context - Expect HTTP 403 with
{"error":"throttled"}under load. The Python SDK retries five times from 11 seconds, so allow for long waits - A device is locked to the IP address it first connects from unless it was created with
--unlock-ip. Check this before running from a dynamic address - Leave
--auto-approveoff on the MCP server. It removes confirmation for deletes and for unmasking values
Questions
Which is better for AI agents, Akeyless (SecretlessAI and MCP server) or Keeper Secrets Manager?
Akeyless (SecretlessAI and MCP server) scores 73.6 (BB) on agent readiness against Keeper Secrets Manager's 69.4 (B), and leads in 4 of 7 scored categories. Keeper Secrets Manager leads on maintenance & community and transparency & trust.
Can an agent call Akeyless (SecretlessAI and MCP server) and Keeper Secrets Manager without installing anything?
Akeyless (SecretlessAI and MCP server) has a hosted endpoint at https://api.akeyless.io. Keeper Secrets Manager runs on your own machine, with no hosted endpoint listed.
Other comparisons with Akeyless (SecretlessAI and MCP server) or Keeper Secrets Manager
- 1Password service accounts, SDKs and Environments MCP vs Akeyless (SecretlessAI and MCP server)
- 1Password service accounts, SDKs and Environments MCP vs Keeper Secrets Manager
- Akeyless (SecretlessAI and MCP server) vs AWS Secrets Manager
- Akeyless (SecretlessAI and MCP server) vs Azure Key Vault
- Akeyless (SecretlessAI and MCP server) vs Bitwarden Secrets Manager
- Akeyless (SecretlessAI and MCP server) vs Doppler
- Akeyless (SecretlessAI and MCP server) vs Google Cloud Secret Manager
- Akeyless (SecretlessAI and MCP server) vs HashiCorp Vault + Vault MCP Server
- Akeyless (SecretlessAI and MCP server) vs Infisical
- Akeyless (SecretlessAI and MCP server) vs Phase
- Akeyless (SecretlessAI and MCP server) vs Pulumi ESC
- AWS Secrets Manager vs Keeper Secrets Manager
- Azure Key Vault vs Keeper Secrets Manager
- Bitwarden Secrets Manager vs Keeper Secrets Manager
- Doppler vs Keeper Secrets Manager
- Google Cloud Secret Manager vs Keeper Secrets Manager
- HashiCorp Vault + Vault MCP Server vs Keeper Secrets Manager
- Infisical vs Keeper Secrets Manager
- Keeper Secrets Manager vs Phase
- Keeper Secrets Manager vs Pulumi ESC
Machine-readable
- This page as Markdown
/compare/akeyless-vs-keeper-secrets-manager.md· slim.min.md· JSON.json(or sendAccept: text/markdown) - Each listing in full
/api/v1/tools/akeyless.json·/api/v1/tools/keeper-secrets-manager.json - From a terminal
anchor compare akeyless keeper-secrets-manager(the CLI) - Over MCP
compare_tools {"a": "akeyless", "b": "keeper-secrets-manager"}at/mcp, no key