Watch+575 this week29,010 · 2,225 forks

Open-source secrets and access management

Real, but not yet worth your team's attention.

Who it's for

Small teams with complex security needs

What it replaces

Manual secrets management or paid tools like Hashicorp Vault

The catch

Unclear custom license may pose commercial use risks

Your first hour

Review the LICENSE file and consult a lawyer

Licence check

Custom / check the LICENSE file. GitHub could not identify a standard licence for this repository, which usually means a custom or source-available one. Read the LICENSE file before you build on it.

This is a reading of the licence label, not legal advice.

The numbers

Stars29,010
Forks2,225
Stars added (7d)+575
Open issues744
LanguageTypeScript
LicenceCustom / check the LICENSE file
Last pushUpdated today
Project age4 years old

Maintainers describe it as: Infisical is the open-source platform for secrets, certificates, and privileged access management.

acmecertificate-managementclienvironment-variablesgogolangnode-jsopen-sourcepkipostgres

infisical, in short

Should a small team use infisical?
Watch. Real, but not yet worth your team's attention. Small teams with complex security needs
What does infisical actually do?
Open-source secrets and access management
What does infisical replace?
Manual secrets management or paid tools like Hashicorp Vault
What is the downside of infisical?
Unclear custom license may pose commercial use risks
Can infisical be used in a commercial product?
Its licence is Custom / check the LICENSE file, which carries obligations or restrictions for commercial use. Read the LICENSE file, and get a lawyer's read before you ship it inside a product you sell.

Weighed against

Which of these actually matters to your company?

Tell us what you build and we will screen the week's open-source moves and the week's research against it — and say which ones are worth your time. One email, Monday, free.

Or run a free brief on your own company right now — takes about 30 seconds, no signup.

Stars, forks, licence and last-push data from the public GitHub API, refreshed August 29, 2026. The verdict is NoizeOff's editorial opinion for a team of 2–20, not advice from the project's maintainers, and not legal advice on licensing. We are not affiliated with Infisical.

Adoption Radar · Company briefs · Home