Envie

Open source .env file replacement and secrets manager

Visit Website
October 2, 2025 Dev update: version 0.1.0 released!

Release 0.1.0 involves a major upgrades to access tokens that make using Envie in CICD pipelines and Dockerfiles easier.

Access tokens no longer require a keypair to be set on the host machine. Instead, each access token itself contains an encoded Ed25519 keypair.

To create an access token run:

envie access-token create <access-token-name>

To use the access token, set the value of ENVIE_ACCESS_TOKEN environment variable to the value of your token.

You can now use CLI commands without having to log in. Instead the access token is used for authentication.

NOTE: you must explicitly grant access to environments for your access tokens:

envie environment set-access <environment-path> <access-token-name>

Your access token inherits the same organization access as your user account.

With your access token, you can now easily invoke Envie from Dockerfiles or CICD.

Comment

September 30, 2025 Building a better way to manage environment variables and application secrets

I built a tool called Envie because I was tired of the chaos around environment variables, API keys, and other secrets.

If you’ve ever:

  • Juggled multiple .env files (.env.local, .env.prod, .env.debug… and forgotten which one is actually being used)

  • Wasted time digging through Slack threads or web dashboards just to find the right API key to debug a production issue

  • Accidentally committed (or had your AI commit) a secret or left sensitive files lying around on your machine

…then you know the pain that led me to start this project.

What is Envie?

Envie is an open-source, self-hostable CLI + service for managing secrets and environment variables.

  • Cleaner workflow → No more dumping .env files on disk.

  • Team-friendly → Stop passing credentials around in chat. Use Envie with fine grained access control.

  • Safer by default → Less chance of secrets leaking (especially with AI tools scanning local files).

  • Built for real-world dev setups → Works well with monorepos, Turborepos, and projects with lots of apps/packages.

  • General secrets manager for production use: Self hostable and open source

Think of it as a more modern, developer-friendly alternative to dotenv and scattered .env files.

Contributors welcome! Check out Envie on GitHub: https://github.com/ilmari-h/envie

Comment

About

Application secrets are often scattered across web dashboards, random .env files and insecure chat channels. Envie centralizes secret management in a convenient way that works as a dropin replacement for .env files.