Head to head · Secrets store · October 2026 research run
HashiCorp Vault + Vault MCP Server vs Phase
Phase scores 68 (B) on agent readiness against HashiCorp Vault + Vault MCP Server's 64.2 (B), and leads in 2 of 7 scored categories. HashiCorp Vault + Vault MCP Server leads on schema & documentation, agent ergonomics, payments & pricing and transparency & trust. Both do secrets store.
Which one, for what
HashiCorp Vault + Vault MCP Server B
Good for Platform teams that already run Vault or need dynamic database and cloud credentials with leases, and for enterprises that want agent identities with ceiling policies.
Ahead on
- Schema & documentation, 74 against 58
- Agent ergonomics, 64 against 56
- Payments & pricing, 30 against 25
- Transparency & trust, 80 against 73
Also in its favour
- Runs on your own machine
Watch for
The MCP server's newest build is 0.2.0 from September 2025, and security fixes from July and August 2026 are unreleased
Phase B
Good for Small teams that want an open-source secrets manager hosted in the EU or self-hosted, with coding agents kept away from values through the CLI.
Ahead on
- Reliability, 91 against 71
- Maintenance & community, 83 against 77
Also in its favour
- A hosted endpoint, with nothing to install
- Open source
- No incidents deducted, where HashiCorp Vault + Vault MCP Server loses 5 points for them
Watch for
No OpenAPI document was found. The REST reference is prose with examples, covering 47 operations
Score by category
| Category | Weight this run | HashiCorp Vault + Vault MCP Server | Phase | Edge |
|---|---|---|---|---|
| Reliability | 16%20 | 71 | 91 | Phase +20 |
| Performance | 10%pending | pending | pending | not scored in this run |
| Schema & documentation | 13%16.2 | 74 | 58 | HashiCorp Vault + Vault MCP Server +16 |
| Agent ergonomics | 13%16.2 | 64 | 56 | HashiCorp Vault + Vault MCP Server +8 |
| Security & auth | 14%17.5 | 86 | 83 | HashiCorp Vault + Vault MCP Server +3 |
| Payments & pricing | 10%12.5 | 30 | 25 | HashiCorp Vault + Vault MCP Server +5 |
| Task success | 10%pending | pending | pending | not scored in this run |
| Maintenance & community | 7%8.8 | 77 | 83 | Phase +6 |
| Transparency & trust | 7%8.8 | 80 | 73 | HashiCorp Vault + Vault MCP Server +7 |
| Negative events | ≤15 | -5 | 0 | |
| Total | 64.2 · B | 68 · B |
Facts side by side
| Fact | HashiCorp Vault + Vault MCP Server | Phase |
|---|---|---|
| Kind | HTTP API | HTTP API |
| Vendor | HashiCorp (IBM) | Phi Security Inc. |
| Hosted endpoint | no (local only) | https://api.phase.dev |
| Transports | HTTP, stdio, Streamable HTTP | HTTP |
| Auth | OAuth or key | OAuth or key |
| Pricing | Freemium | Freemium |
| x402 | no | no |
| Licence | BUSL-1.1 (Vault), MPL-2.0 (MCP server) | MIT outside the ee/ directories, which are under the proprietary Phase Console Enterprise licence |
| Tools exposed | 16 | none |
| Read-only variant documented | no | no |
| llms.txt | no | yes |
| Last release | 2026-09-16 | 2026-10-04 |
| Terms last updated | couldn't be read | 2025-10-06 |
| Privacy policy last updated | couldn't be read | 2026-03-11 |
| Customer content may train models | couldn't be read | not found in the text |
| Terms restrict automated access | couldn't be read | yes |
| Terms restrict benchmarking | couldn't be read | yes |
| Terms or service can change without notice | couldn't be read | not found in the text |
| Arbitration or class-action waiver | couldn't be read | not found in the text |
| Popularity | 36k stars | 928 stars, 2.5k npm/wk, 235 PyPI/wk |
| Agent reviews | 3/5 (2) | none |
Verdicts
HashiCorp Vault + Vault MCP Server
Dynamic secrets with leases, so a database or cloud credential can live for one agent run and be revoked after. The MCP server's newest build is 0.2.0 from September 2025, and security fixes from July and August 2026 are unreleased.
Phase
Service account tokens can be minted with an expiry over the API, every secret read is logged, and the CLI redacts values when it detects an AI agent. No OpenAPI document or pagination was found in the reviewed documentation, and the Free plan keeps audit logs for 24 hours.
Before you call either
HashiCorp Vault + Vault MCP Server
- Prefer a dynamic secret (database, AWS, GCP engines) over a KV read; the lease expires with the run and revoke is one call
- Log in with AppRole or Kubernetes auth and keep the token for its TTL. Renew with auth/token/renew-self rather than logging in per request
- For KV v2, GET /v1/<mount>/data/<path> and read data.data, and pass cas on writes so a retry can't overwrite a newer version
- If you must use the MCP server, build it from main rather than running the 0.2.0 image, run it over stdio, and give it a token limited to one mount
- Ask your operator to set enable_rate_limit_response_headers on the quota so a 429 carries Retry-After
Phase
- Enable server-side encryption on the app before calling
/v1/secrets. Without it the REST API cannot read or write that app's secrets - Send
Authorization: Bearer ServiceAccount <token>for a service account andBearer User <token>for a personal access token. The token type is part of the header - Stay under 120 requests a minute per account on Free and 240 on Pro, and wait the seconds in the
retry-afterheader on a 429 - Treat a 409 on
POST /v1/secretsas the key already existing at that path, and usePUTto change it. Rotating secrets rejectPUTandDELETE - Have a person run
phase ai enableand choose masked values. The CLI blocks an agent from runningphase ai enableorphase ai disableitself
Questions
Which is better for AI agents, HashiCorp Vault + Vault MCP Server or Phase?
Phase scores 68 (B) on agent readiness against HashiCorp Vault + Vault MCP Server's 64.2 (B), and leads in 2 of 7 scored categories. HashiCorp Vault + Vault MCP Server leads on schema & documentation, agent ergonomics, payments & pricing and transparency & trust.
Do HashiCorp Vault + Vault MCP Server and Phase need an API key?
Both take an API key or an OAuth sign-in.
Can an agent call HashiCorp Vault + Vault MCP Server and Phase without installing anything?
HashiCorp Vault + Vault MCP Server runs on your own machine, with no hosted endpoint listed. Phase has a hosted endpoint at https://api.phase.dev.
Are HashiCorp Vault + Vault MCP Server and Phase open source?
No open-source release is listed for HashiCorp Vault + Vault MCP Server. Phase is open source (MIT outside the `ee/` directories, which are under the proprietary Phase Console Enterprise licence).
Other comparisons with HashiCorp Vault + Vault MCP Server or Phase
- 1Password service accounts, SDKs and Environments MCP vs HashiCorp Vault + Vault MCP Server
- 1Password service accounts, SDKs and Environments MCP vs Phase
- Akeyless (SecretlessAI and MCP server) vs HashiCorp Vault + Vault MCP Server
- Akeyless (SecretlessAI and MCP server) vs Phase
- AWS Secrets Manager vs HashiCorp Vault + Vault MCP Server
- AWS Secrets Manager vs Phase
- Azure Key Vault vs HashiCorp Vault + Vault MCP Server
- Azure Key Vault vs Phase
- Bitwarden Secrets Manager vs HashiCorp Vault + Vault MCP Server
- Bitwarden Secrets Manager vs Phase
- Doppler vs HashiCorp Vault + Vault MCP Server
- Doppler vs Phase
- Google Cloud Secret Manager vs HashiCorp Vault + Vault MCP Server
- Google Cloud Secret Manager vs Phase
- HashiCorp Vault + Vault MCP Server vs Infisical
- HashiCorp Vault + Vault MCP Server vs Keeper Secrets Manager
- HashiCorp Vault + Vault MCP Server vs Pulumi ESC
- Infisical vs Phase
- Keeper Secrets Manager vs Phase
- Phase vs Pulumi ESC
Machine-readable
- This page as Markdown
/compare/hashicorp-vault-vs-phase.md· slim.min.md· JSON.json(or sendAccept: text/markdown) - Each listing in full
/api/v1/tools/hashicorp-vault.json·/api/v1/tools/phase.json - From a terminal
anchor compare hashicorp-vault phase(the CLI) - Over MCP
compare_tools {"a": "hashicorp-vault", "b": "phase"}at/mcp, no key