Secrets
Managing secrets in the web app.
Secrets
The secrets page is where you create, view, and manage your environment variables.
Viewing Secrets
Secrets are displayed in a list showing:
- Key: The environment variable name
- Value: Hidden by default (click to reveal)
- Version: Current version number
- Updated: When it was last modified
Creating a Secret
- Click Add Secret
- Enter the key name (e.g.,
DATABASE_URL) - Enter the secret value
- Optionally add a description
- Click Save
Key Naming Conventions
- Use UPPERCASE with underscores:
DATABASE_URL,API_KEY - Be descriptive:
STRIPE_SECRET_KEYvs justKEY - Group related secrets:
AWS_ACCESS_KEY_ID,AWS_SECRET_ACCESS_KEY
Editing a Secret
- Click on a secret row to select it
- Click the edit icon or press Enter
- Modify the value
- Click Save
Each edit creates a new version, preserving the history.
Viewing Value
Secret values are hidden by default for security. To view:
- Click the eye icon next to the value
- The value is revealed
- Click the eye icon again to hide it
Version History
Click on a secret to see its version history:
- Previous values (partially masked)
- Who made each change
- When changes were made
Deleting a Secret
- Select the secret
- Click the delete icon
- Confirm the deletion
Deleted secrets cannot be recovered. The version history is also removed.
Bulk Operations
Import from .env
- Click Import
- Paste your
.envfile contents or upload a file - Review the secrets to be imported
- Click Import
Export to .env
- Click Export
- Download the
.envfile
For automated sync, use the CLI: keyenv pull and keyenv push