Skip to main contentKeeper is built with engineers in mind
Gain control over your Keeper environment with purpose-built developer tools, SDKs and native integrations.
Secrets management for developers and DevOps teams
VS Code extension
Keeper Secrets Manager for VS Code brings secure vault access directly into the development workflow, allowing developers to save, retrieve and generate secrets without leaving their editor. With support for both Keeper Commander® CLI and Secrets Manager, plus secure command execution and built-in secret detection, teams can eliminate hard-coded credentials while maintaining zero-knowledge security.
Secrets Manager SDK
Accelerate development with Keeper Secrets Manager SDKs, designed for fast, lightweight and secure secrets retrieval across modern application stacks. Integrate secrets into your applications with minimal code while maintaining zero-knowledge encryption and high performance.
[Supported SDKs: Java/Kotlin, JavaScript, Python, .NET, Go, Ruby, Rust]
Secrets Manager CLI
The Keeper Secrets Manager CLI enables secure, machine-based access to secrets directly from terminals, scripts and automation pipelines. Capabilities include secrets retrieval, environment variable injection, configuration initialization and shell execution support.
Commander SDK
The Keeper Commander SDKs for .NET and Python provide programmatic access to the Keeper Vault, Enterprise Admin Console and Secrets Manager. They enable secure credential management, enterprise policy control and automation at scale, allowing organizations to embed Keeper's zero-trust security into custom applications and DevOps workflows.
Secrets Manager integrations
Keeper Secrets Manager integrates natively with popular CI/CD platforms, container environments and orchestration tools, including Kubernetes, allowing secrets to be injected securely at runtime without hard-coded credentials or workflow disruption.
SSH Key Management
Keeper SSH Key Management centralizes SSH key storage, access control and lifecycle management. It includes automated rotation, Role-Based Access Controls (RBAC), audit logging and secure browser-based access. No private keys exposed. No VPN required.
SSH Agent
Keeper’s SSH Agent dynamically loads SSH keys from the encrypted vault into memory-only sessions, eliminating persistent local key storage while enabling seamless terminal-based access.
Shell integrations
The Keeper Secrets Manager exec command injects secrets into environment variables at runtime, allowing any script, binary or system call to securely implement secrets without application code changes.
Terraform Provider
The Keeper Secrets Manager Terraform Provider enables Terraform configurations to securely reference secrets stored in the Keeper Vault, preventing plaintext secrets in state files or source control.
Automated password rotation
Keeper supports automated credential rotation through configurable rotation workflows and extensible PAM scripts. Organizations can use built-in scripts, develop custom logic or leverage community-supported integrations.
Account Discovery
Keeper Discovery identifies privileged accounts, service accounts and credential dependencies across infrastructure, helping security and DevOps teams eliminate blind spots and reduce risk.
Git commit signing
Keeper enables secure storage and use of GPG and SSH signing keys to support verified Git commits, protecting repositories from impersonation and unauthorized code changes.
Multi-protocol Connections
Keeper Connections provides secure, credential-free access to servers, databases and web applications directly from the Keeper Vault. Credentials are injected at runtime and never exposed to end users.
SaaS rotation plugins
Extend Keeper with plugins that enable automated credential rotation for SaaS applications and third-party services. Integrate rotation workflows into proprietary systems, internal tools and unsupported platforms to maintain continuous credential hygiene without manual intervention.
Remote Browser Isolation
Keeper Remote Browser Isolation executes web sessions in a remote environment to protect users from web-based threats. Credentials can be injected securely without being transmitted to or stored on endpoint devices.
Tunneling
Keeper Tunneling enables secure access to internal services and databases through encrypted tunnels while continuing to use native client tools and without exposing network resources publicly.
KeeperDB
KeeperDB is a database management tool. Use it as a standalone desktop app on Windows, macOS and Linux, or launch it directly from a KeeperPAM vault record for a fully managed, passwordless session.
Connect to PostgreSQL, MySQL, SQLite, Microsoft SQL Server, Oracle and Amazon Redshift from one interface, with a query editor, SQL autocomplete, schema graph, real-time monitor and built-in KeeperAI® assistant.
Agentic AI
Keeper Secrets Manager supports secure secret access for AI agents via the Model Context Protocol (MCP), enabling automated workflows while maintaining zero-trust and zero-knowledge security.
Automate and control your Keeper environment
Commander CLI
Keeper Commander® is a full-featured command-line interface with an interactive supershell that enables secure, scriptable and repeatable workflows across vault and administrative operations, including user management, reporting, credential rotation, connections and tunneling.
Commander Service Mode API
Deploy Keeper Commander as a self-hosted REST API service to integrate the Keeper Vault and administrative capabilities with third-party systems while preserving zero-knowledge encryption.
Provisioning and Account Management APIs
Keeper Admin API
The Keeper Admin API provides access to event logs, compliance data, reporting metrics and administrative insights via a flexible REST API interface.
Account Management API for MSPs
MSPs can use the Account Management API to manage tenants, subscriptions, trials and usage metrics across customer environments.
SCIM API
Keeper supports SCIM 2.0 for automated user provisioning, deprovisioning, group management, shared folder access and policy enforcement.
Killercoda
Killercoda is an interactive learning platform that provides hands-on, practical learning experiences for many Keeper dev tools.
Join the Community
Keeper Github Repo
SDKs and tools for the Keeper Security platform: Commander CLI, Secrets Manager and third-party integrations.
Github RepoApache Guacamole
Keeper's connection management solutions are commercially supported capabilities powered by Apache Guacamole, developed by its original creators.
Apache GuacamoleSlack Channel
Share your knowledge, discover best practices and stay informed with exclusive updates and insights directly from the Keeper team.
Join the Slack ChannelFrequently asked questions
We value your privacy
We use cookies on our site to give you the best browsing experience, serve personalized ads about our products and content, and analyze website traffic. To learn more, please refer to our Privacy Policy.
Chat with Support
You must accept cookies to use Live Chat.
PlatformPlatform
- Products
- Compare
- Technology
- Download
ResourcesResources
- Product information
- Resources
- Free Cybersecurity Tools
- Partners
- Blog
- Partners
- English (US)