{"repo":"hashicorp/vault-action","free":true,"listed":false,"github":"https://github.com/hashicorp/vault-action","clone":"git clone https://github.com/hashicorp/vault-action.git","description":"A GitHub Action that simplifies using HashiCorp Vault™ secrets as build variables.","language":"JavaScript","stars":512,"topics":["vault","github-actions","github-actions-javascript","multiple-secrets","secrets-engine","vault-action"],"license":"MIT","category":"auth-billing-email","readme_excerpt":"Vault GitHub Action --- Please note : We take Vault's security and our users' trust very seriously. If you believe you have found a security issue in Vault or this Vault Action, please responsibly disclose by contacting us at security@hashicorp.com. --- A helper action for easily pulling secrets from HashiCorp Vault™. Note: The Vault Github Action is a read-only action, and in general is not meant to modify Vault’s state. - Vault GitHub Action - Example Usage - Authentication Methods - JWT with GitHub OIDC Tokens - AppRole - Token - GitHub - JWT with OIDC Provider - Kubernetes - Userpass - Ldap - Other Auth Methods - Custom Path - Key Syntax - Simple Key - Set Output Variable Name - Multiple Secrets - KV secrets engine version 2 - Other Secret Engines - Adding Extra Headers - HashiCorp Cloud Platform or Vault Enterprise - Namespace - Reference - Masking - Hiding Secrets from Logs - Normalization - Contributing Example Usage Retrieved secrets are available as environment variables or outputs for subsequent steps: If your project needs a format other than env vars and step outputs, you can use additional steps to transform them into the desired format. For example, a common pattern is to save all the secrets in a JSON file: Which with our example would yield a file containing: Note that all secrets are masked so programs need to read the file themselves otherwise all values will be replaced with a placeholder. Authentication Methods Consider using a Vault authentication method ","default_branch":null,"files":null,"tree":[],"storefront":"/r/hashicorp","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/hashicorp/vault-action/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}