Find the key you need.
Group keys by project, search by name or provider, and check expiry dates in one place. Spend less time hunting through old files.
PROJECTS · SEARCH · EXPIRYKeep your API keys in one place on your Mac.
Give coding agents the access they need, without pasting your keys into chat.
New project. Same keys. Another .env file. VaultOS keeps your keys organized and lets your agent write the ones you approve into the right project. You can get on with building.
You choose which projects and folders each agent can access through VaultOS.
Find a key, check its details, and manage agent access from one desktop app. Your secrets stay organized as your projects grow.
Apple Silicon & Intel · macOS 13+
Unsigned preview. Start with test credentials.

Keep the keys in your vault. Choose what each agent can do with them. Change its access when the work changes.
Group keys by project, search by name or provider, and check expiry dates in one place. Spend less time hunting through old files.
PROJECTS · SEARCH · EXPIRYGive each agent its own access. Choose the projects it can use, the folders it can write to, and the actions it can take through VaultOS.
PER-AGENT PERMISSIONSLet your agent write approved keys into an environment file through MCP. Choose dotenv, JSON, or shell format. The tool response reports what was written without including the values.
SCOPED SECRET INJECTIONAn agent needs your permission to edit credentials you own. If it adds a new key, you approve that key before it can write it into a project.
HUMAN APPROVALYour vault is encrypted and stored locally. There is no account to create, no telemetry, and no automatic cloud upload. You can choose to remember your password in Keychain.
LOCAL STORAGE · OPT-IN KEYCHAINMake encrypted backups, export a PDF, change your vault password, or review and undo supported changes. Optional encrypted Git sync lets you connect another machine when you need to.
BACKUPS · RECOVERY · OPTIONAL SYNCVaultOS keeps secret values out of injection responses. The files it writes still contain plaintext secrets, and an agent with filesystem access can read them.
Think of it as a way to organize your keys and control how agents use the vault. It cannot isolate an agent from files on your Mac.
Read the security modelDownload the preview for your Mac. Verify its checksum, open it, and create a vault with a passphrase you’ll remember.
Get the previewAdd a project. Enroll your agent. Choose its permissions and the folders it can write to. Save its token in a private file.
Connect your agentGive it the setup prompt. It can prepare the MCP bridge and verify a test injection. You handle passwords and approvals.
A few things to know before you get started.
Try it with one project and a test key.
See how it fits the way you work.