Get started

AsyncFlux Secrets

Workspace secrets for people, machines and agents.

AsyncFlux Secrets lets you manage named values in workspace environments, review their history, and give machines access through an authenticated HTTPS API.

Open the dashboard to work with secrets. Use the API at https://app.asyncflux.com/api/secrets from another machine. A workspace API token connects that machine to one workspace; the token's permissions apply across all its environments.

Start with your task

I want to… Read
Add a first example secret Quickstart
Edit, import, compare or restore values Use the dashboard
Connect a laptop, service or coding agent Connect a machine or agent
Organize development and production values Workspaces and environments
Choose access, replace a token or revoke it Permissions and tokens
Integrate directly over HTTPS API reference
Diagnose access failures or handle values safely Troubleshooting

Metadata and values are different access decisions

Metadata includes names, types, versions, notes, history and display values. Display values depend on the secret type: most are masked, connection strings are partly masked, and values marked certificate, publishable or config are displayed in full. Metadata is therefore not guaranteed to be value-free.

Reading protected plaintext requires a separate permission. Revealing one value, exporting an environment and comparing actual values all use that permission. Management access can change values without granting permission to retrieve existing protected values.

The dashboard is part of Vikings. Workspace identities, roles and API tokens come from Vikings access controls; the Secrets service holds the secrets. An identity-provider sign-in and a workspace automation token are different credentials.

For machines and agents

Start with metadata, request only the permissions the task needs, and use a separate token per integration. Keep credentials and retrieved values outside prompts, logs and repositories. Connect a machine or agent walks through authentication without printing a secret value.

AsyncFlux Secrets documentation
Search documentation