Nicheloom

Market intelligence for builders — see what's gaining traction before it's crowded.

Capy

A Git-style platform for managing your team's secrets

Details

External ID
49188168
Source
HN
Company
—
Product
Capy
Website domain
github.com
Launched
Aug. 5, 2026
Cohort
—
Upvotes
13
Upvotes percentile
0.6639784946236559
Tags
—
Fetched at
Sept. 10, 2026, 5:32 a.m.
Updated at
Sept. 10, 2026, 5:32 a.m.

Description

Hello HN!We're all spending more and more time making stuff with agents, but I've noticed that one of the things that is the most disconnected from my daily engineering workflow is dealing with secrets and credentials. It often involves a lot of click-ops, copying/pasting, and collaboration, and none of the secrets management products out there have truly scratched that itch.I built Capy to solve this. It's a secrets manager whose entire frontend is a developer CLI, and I find it extremely ergonomic to use by hand. You also don't need to leave the CLI to sign up for and use it! You can install and authenticate without leaving your terminal (or agent) session.It also has very powerful version management with git-like branching and conflict resolution. You can push a version manifest to source control and have collaborators pull a specific version of the secrets at any point in time.The platform itself is extremely secure. It encrypts your local .env files so they can't be read directly. Upon pushing the values to the service, it encrypts them yet again with a service key. That way neither a compromised local machine nor a compromised service alone will result in a leakage.BTW: Since it was released in April, I've been refining it and have evolved the focus a bit. Originally I was going for more TUI and TTY with guided wizards for doing things like deployments, rotations, and connecting services, but I realize that the real future is in making the product work EXTREMELY well with agents.So the next evolution of is a more satisfying Agent ergonomic, and I have been working on something big next on that front.Curious about your thoughts on the idea, execution, and would appreciate any and all feedback!

Enrichment

Theme
self-hosted infrastructure and security tools
Vertical
Security
Function
Vertical SaaS
Audience
B2B
AI stance
Not AI
Project type
Commercial product
Normalized one-liner
git-style secret management for teams
Manually corrected
False

Could you build this?

Partial The CLI and collaboration UI are straightforward, but building a production-grade team secret management system requires secure cryptographic primitives and zero-knowledge end-to-end encryption.

What it would actually take: The backend requires an encrypted vault architecture (similar to HashiCorp Vault or 1Password) using asymmetric encryption (e.g., libsodium/NaCl) with per-team and per-user key wrapping, zero-knowledge proofs, and secure audited access logs. Specialized cryptographic knowledge is necessary to prevent secret leakage in transit, rest, and memory.

Discussion

13 comments analyzed.

Competitors mentioned: Doppler, Infisical, Coder built-in secrets management, Claude secrets management, Copilot secrets management

Concerns raised: Agentic determinism and behavior consistency with agents, Whether another tool is needed in existing workflows with built-in secrets management, Backend security and what happens in case of compromise, How security compares to other platforms like Doppler

Feature requests: MCP (Model Context Protocol) for agentic workflows, Agent automation for secrets management tasks similar to software factories, Documentation on security posture and how secrets are kept safe

Competitors

Other products that read as similar to this one — 279 launches clear the similarity bar, closest 8 shown.

Attention rank: #115 of 280 (itself plus its competitors, highest first — normalized so YC and Product Hunt are compared fairly).

Launched 278 days after the earliest competitor.

Other launches for this product

Same idea, different domain

Nobody's really built a vertical saas tool for Insurance yet.