frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

Show HN: Capy – A Git-style platform for managing your team's secrets

https://github.com/capysc/capy-cli
7•cvince•1h ago
Hello HN!

We're all spending more and more time making stuff with agents, but I've noticed that one of the things that is the most disconnected from my daily engineering workflow is dealing with secrets and credentials. It often involves a lot of click-ops, copying/pasting, and collaboration, and none of the secrets management products out there have truly scratched that itch.

I built Capy to solve this. It's a secrets manager whose entire frontend is a developer CLI, and I find it extremely ergonomic to use by hand. You also don't need to leave the CLI to sign up for and use it! You can install and authenticate without leaving your terminal (or agent) session.

It also has very powerful version management with git-like branching and conflict resolution. You can push a version manifest to source control and have collaborators pull a specific version of the secrets at any point in time.

The platform itself is extremely secure. It encrypts your local .env files so they can't be read directly. Upon pushing the values to the service, it encrypts them yet again with a service key. That way neither a compromised local machine nor a compromised service alone will result in a leakage.

BTW: Since it was released in April, I've been refining it and have evolved the focus a bit. Originally I was going for more TUI and TTY with guided wizards for doing things like deployments, rotations, and connecting services, but I realize that the real future is in making the product work EXTREMELY well with agents.

So the next evolution of is a more satisfying Agent ergonomic, and I have been working on something big next on that front.

Curious about your thoughts on the idea, execution, and would appreciate any and all feedback!

Comments

lirbank•1h ago
This has been needed long before agents were a thing - and now with agents, even more so! Excited to try it out. But I would like to understand more about the security posture. What documentation do you have for how Capy keeps secrets safe?
cvince•57m ago
Capy uses a split-key encryption model, meaning secrets are encrypted client-side before reaching our servers—so the backend never sees or stores raw plaintext keys. The design is also pretty unique in that it can be used to cryptographically revoke local secrets remotely.

You can read more about it here: https://www.capy.sc/docs/internals/zero-trust

In addition, the company is right around the corner on our SOC2 Type I audit. It should be available within the next week!

https://trust.capy.sc/

Spencer-BenAi•1h ago
Good idea
theLiminator•10m ago
Looks pretty cool, what steps are you taking to ensure that the backend is secure?

AI models breaking contraints has industry concerned

https://www.rnz.co.nz/news/world/901880/ai-models-breaking-contraints-has-industry-concerned-hele...
4•billybuckwheat•1m ago•0 comments

A Fed official is asking whether AI is becoming 'too big to fail'

https://thenextweb.com/news/a-fed-official-is-asking-whether-ai-is-becoming-too-big-to-fail
2•cdrnsf•2m ago•0 comments

Turn a protein PDB structure into a 3D print

https://pdb2print.org/
1•mihaitodor•3m ago•0 comments

Virus reactivation in acute and long Covid-19

https://www.nature.com/articles/s41586-026-10740-z
1•sbulaev•3m ago•0 comments

'She was almost a Batman figure': Mexico's avenging Mother Courage

https://www.theguardian.com/news/ng-interactive/2026/jul/21/she-was-almost-a-batman-figure-mexico...
1•gmays•4m ago•0 comments

We're debating the next feature for StateGuard. Would you trust this?

https://www.indiehackers.com/post/were-debating-the-next-feature-for-stateguard-would-you-trust-t...
1•doodlebyte•5m ago•0 comments

These Employees Like Their A.I. Boss. Its Shop Is Kind of a Disaster

https://www.nytimes.com/2026/08/04/us/ai-boss-san-francisco-andon-market.html
2•paulpauper•5m ago•0 comments

The A.I. Giants Weren't Prepared for This

https://www.nytimes.com/2026/08/04/opinion/ezra-klein-podcast-jasmine-sun.html
1•paulpauper•6m ago•0 comments

OpenAI says my prepaid credits were consumed, refuses to show any record

https://community.openai.com/t/how-openai-lost-a-paying-customer-over-160-it-refuses-to-explain/1...
2•ppavlyuk•6m ago•1 comments

Lemmings (Video Game)

https://en.wikipedia.org/wiki/Lemmings_(video_game)
1•soupspaces•7m ago•0 comments

Show HN: Thunderbird addon for displaying message excerpt next to subject line

https://github.com/michael-markl/thunderbird-message-excerpts
1•michael-markl•8m ago•0 comments

Keeping yesterday's computers ticking takes more than nostalgia

https://www.theregister.com/offbeat/2026/08/05/keeping-yesterdays-computers-ticking-takes-more-th...
3•rbanffy•11m ago•0 comments

When online commenters detect my art as AI

https://www.davidrevoy.com/article1164/when-online-commenters-detect-my-art-as-ai
1•Jare•11m ago•0 comments

Pre-commit vs. CI quality gates

https://blog.codacy.com/pre-commit-vs-ci-quality-gates-when-fast-shipping-moves-the-checks-upstream
1•ARayOutOfBounds•13m ago•0 comments

Time travellers are using LinkedIn to teach us about artificial intelligence

https://www.ft.com/content/4a4b442c-7ae4-4553-bcab-d744d8d46c79
1•JumpCrisscross•13m ago•0 comments

A Polish architect rotated his house to hide it in the hill

https://www.yankodesign.com/2026/07/30/a-polish-architect-rotated-his-house-to-hide-it-in-the-hill/
1•andrewstetsenko•14m ago•0 comments

Hank Green found the AI problem that YouTube labels can't catch

https://arstechnica.com/ai/2026/08/hank-green-found-the-ai-problem-that-youtube-labels-cant-catch/
2•CharlesW•16m ago•0 comments

Fragplay – Download and play music easily

https://codeberg.org/micro4scopic/fragplay
1•holeinwall•16m ago•1 comments

Pam Bondi Implicated in as Much as $5.5M in Insider Trading

https://cmarmitage.substack.com/p/pam-bondi-implicated-in-as-much-as
15•JumpCrisscross•18m ago•1 comments

Muse Spark 1.2 (Xhigh) Intelligence, Performance and Price Analysis

https://artificialanalysis.ai/models/muse-spark-1-2
1•theanonymousone•19m ago•0 comments

Animals that self-medicate (2014)

https://www.pnas.org/doi/10.1073/pnas.1419966111
1•EndXA•22m ago•0 comments

Call for Ideas: Autonomous Software Experiments on Hera

https://ideas.esa.int/core/servlet/hype/IMT?documentTableId=8527279057944083272&userAction=Browse...
2•Carbonhell•22m ago•1 comments

Mexico's top univ orders 58k students to retake entrance exam:suspected cheating

https://www.theguardian.com/world/2026/aug/05/mexico-top-university-unam-resit-entrance-exam-chea...
2•bookofjoe•23m ago•0 comments

Reddit signals ominous upcoming "changes" for old.reddit.com

https://arstechnica.com/gadgets/2026/08/reddit-signals-ominous-upcoming-changes-for-old-reddit-com/
6•CharlesW•24m ago•3 comments

Show HN: Bifrost: Enterprise MCP Gateway with Built-In Security: OAuth 2.0, RBAC

https://github.com/maximhq/bifrost
1•aanthonymax•25m ago•0 comments

Prime Agent

https://twitter.com/PrimeIntellect/status/2085086999267144083
1•tosh•26m ago•0 comments

OpenStamp – A watermarking method for open-weight LLMs

https://github.com/mb-14/openstamp/
1•mb14•26m ago•0 comments

AgentGuard – fail-closed approval gateway for AI agent tool calls

https://github.com/moon2022alakhali-commits/agentguard
1•yhouseff_dev•27m ago•0 comments

Tl;Dv (Too Lazy; Didn't Validate): 181,874 Meetings Left Wide Open

https://bobdahacker.com/blog/tldv-hack
4•yoelcabo•28m ago•1 comments

The Lyon Amendment to the Lancaster Consensus: Perl's Toolchain Version Support

https://github.com/Perl-Toolchain-Gang/toolchain-site/blob/master/lyon-amendment.md
1•fanf2•28m ago•0 comments