Skip to content

AccuKnox Secrets Manager¶

AccuKnox Secrets Manager gives you one secure place to store, manage, and read passwords, API keys, tokens, certificates, and other credentials. It replaces hardcoded secrets with central storage, scoped access, encryption, and a full audit log. It is API-compatible with HashiCorp Vault and runs on any Kubernetes cluster at version 1.30 or later.

  • One place for every secret


    Versioned secrets, encryption keys, certificates and one-time codes, each behind a policy.

  • Each app reads only its own paths


    Pods, VMs and pipelines prove who they are, then read what their policy allows.

  • Every request is logged


    Allowed and denied calls land in the audit log, ready for your SIEM.

  • Hardened at runtime


    AccuKnox CWPP protects every Secrets Manager pod with KubeArmor.

A separate product from the AccuKnox CNAPP platform

Secrets Manager ships and installs on its own. You do not need an AccuKnox CNAPP subscription to run it. Contact your AccuKnox point of contact for the Helm chart.

Deploy and Run Secrets Manager¶

Connect Your Applications in One of Two Ways¶

Not sure which one fits? See Choose a Method.

Follow a Use Case¶


SCHEDULE DEMO