Now welcoming pre-alpha teams

Your secrets,finally in order.

VarVault gives every team one secure place to organize, version, and access environment variables — without passing secrets around.

Encrypted at restVersioned by defaultScoped access
vault.varvault.dev
Acme team / Projects

Payments API

+ Add variable
ProductionStagingDevelopment
VariableUpdated

DATABASE_URL

2m ago

STRIPE_SECRET_KEY

1d ago

JWT_SIGNING_KEY

3d ago

RESEND_API_KEY

5d ago
All changes published
v14
AES-256Encrypted
Version 14Published just now

Structured like the teams who use it.

TeamProjectEnvironmentVariable

Everything in one vault

Secrets management that stays out of your way.

Keep the structure your team already understands, add the safeguards it needs, and make every environment available from one dependable place.

One source of truth

Centralized secrets

Organize variables across teams, projects, and environments in a single, structured workspace.

Protected by default

Encrypted storage

Values are encrypted at rest, so your secrets stay secret from the moment they're saved.

A complete trail

Full version history

Every publication is tracked, so you can always see what changed, when, and roll back if needed.

Share safely

Team-based access

Invite your team and collaborate on shared projects without passing secrets around in chat.

Built for workflows

CLI & public API

Pull variables straight into local dev, CI, or deploy pipelines with the CLI or the public API.

Least privilege

Scoped API keys

Issue project-scoped API keys for automation, without ever exposing your master credentials.

A familiar hierarchy

From team to production, without the secret sprawl.

VarVault mirrors how your organization already works, so setup feels natural from the very first project.

1

Create a team

Bring your teammates together in one shared workspace.

2

Add a project

Group variables for each app or service you're shipping.

3

Define environments

Split configuration across development, staging, and production.

4

Publish variables

Store, version, and pull secrets wherever you need them.

Security first

Your secrets should feel boringly secure.

Protection is part of the model, not a setting you have to remember. Every value, permission, and publication is handled with care by default.

Encryption at rest

Variable values are encrypted before they're ever stored.

Role-based access

Access stays scoped to the right teams and projects.

Auditable history

Every publication leaves a clear, versioned trail.

Production vault
Protected

Encryption

All stored values

Active

Access scope

Project members only

Restricted

Latest publication

14 variables · version 14

Recorded

Security controls are applied automatically across every environment in this project.

Put secret sprawl behind you

A calmer way to manage every environment.

Bring your team, projects, and variables together in one secure, beautifully organized vault.