Self-hosted execution layer for AI agents: connect any agent to real APIs, scope exactly what it can touch, and keep credentials out of the agent's hands.
-
Updated
Aug 27, 2026 - Python
Self-hosted execution layer for AI agents: connect any agent to real APIs, scope exactly what it can touch, and keep credentials out of the agent's hands.
Turn a fresh LXC into an AI homelab command center. One command installs Claude Code + a web UI, preloaded with skills, and a credential broker so Claude operates your TrueNAS/Proxmox/Linux over SSH without ever seeing a secret.
Give your agent access to your GitHub, Hugging Face and other accounts safely
Secrets manager for AI agents: let LLM agents use API keys & DB passwords without ever seeing the plaintext. Master-password vault, OS-isolated credential-injecting broker/proxy, per-secret usage policies, PostgreSQL connector. Stops prompt-injection key leaks.
Credential Broker CLI for AI agents: zero-knowledge secret injection (pass/bitwarden), subprocess run injection, integrated DLP with pattern rules, OAuth refresh, structured audit logs. Zero-dependency single binary.
Local SSH credential broker and MCP server
Secretless, identity-aware credential broker for agents & automations (non-human identities) — acts on behalf of a verified caller against any service, including the un-API'd web.
Approval-gated credential brokerage and actor-scoped connectors for OpenClaw.
Secrets for coding agents — both seekrit MCP servers plus the skills that keep API keys out of your agent transcript. One install.
Secretless credential broker: AI agents use real API keys & SSH keys via proxy tokens — plaintext never reaches the agent's process, env, logs, or model context.
Terminal-first AI IDE where the agent builds, runs and debugs your app without you ever handing it a credential.
Stdio MCP bridge for KeyHand — credential dropbox with agent-blind injection. Clients hand off API keys via magic-link form; AI agents use them via HTTP calls without ever seeing the plaintext.
SecretBroker is a local macOS credential broker for scoped, user-approved AI agent operations without exposing stored credentials.
Scoped, TTL-boxed credentials and a signed action-audit trail for autonomous AI agents on Kubernetes — agents hold no long-lived secrets
Security-first Python agent runtime with capability-enforced authorization, broker-controlled credential use, trusted execution boundaries, and adversarial security tests.
Local-first credential broker for AI agents — secrets your agents can use but never see. 66 testable security constraints. Rust.
Lightweight 1Password secret broker daemon for Docker containers
Short-lived, policy-bound credential broker for Vuoro and automation clients
Secretless Agent Gateway for AI agents: encrypted credential custody, scoped egress capabilities, ProofRail evidence, and x402 compatibility.
Credential broker for AI coding tools and MCP clients. Keep raw tokens out of prompts, .env files, and agent output.
Add a description, image, and links to the credential-broker topic page so that developers can more easily learn about it.
To associate your repository with the credential-broker topic, visit your repo's landing page and select "manage topics."