VMware Secrets Manager

APIyesOSS—FREE—DOCS4/5
VS6.7#16 of 39
—Web—Windows—MacoutLinux—Android—iOS

Ranked in Secrets Management Tools ·No free plan on record

About

VMware Secrets Manager is ranked #16 of 39 in secrets management tools on Inferse. It runs on API, Linux, Self-hosted.

Compared on secrets management tools

Kubernetes integration
Yesvsecm.com
Deployment model
self_hostedvsecm.com
Audit logs
Yesvsecm.com

Facts

Purpose
VMware Secrets Manager is a cloud-native secrets store for securely storing configuration and dispatching it to workloads.vsecm.com · 5 Oct 2026
Kubernetes requirement
VSecM is designed to run only on Kubernetes, not as a standalone binary or outside Kubernetes.vsecm.com · 5 Oct 2026
Identity
VSecM uses SPIFFE as its identity control plane for workload authentication.vsecm.com · 5 Oct 2026
Secret delivery
Secrets can be changed dynamically at runtime without rebooting workloads, and can be delivered through a sidecar, init container, SDK, or Kubernetes Secret.vsecm.com · 5 Oct 2026
Secret history
VSecM records creation and update timestamps and keeps version history for secrets.vsecm.com · 5 Oct 2026
Transformations
VSecM supports GoLang transformations on secrets and interpolation of stored secrets onto Kubernetes Secrets.vsecm.com · 5 Oct 2026
Federation
VSecM supports federation of secrets across namespaces and clusters.vsecm.com · 5 Oct 2026
Data protection
Sensitive data is stored in memory, while data saved to disk and backups are encrypted.vsecm.com · 5 Oct 2026
Resilience
Workloads can continue using existing secrets when a VSecM component fails, and the component can recover state from an encrypted backup.vsecm.com · 5 Oct 2026
No admin token
VSecM requires no admin token for operation, though users may provide a root token and then manually unlock after a crash.vsecm.com · 5 Oct 2026
Installation
VSecM installs into a Kubernetes cluster using Helm charts or Makefile targets; the documented prerequisites include Helm, kubectl, a running cluster, and make.vsecm.com · 5 Oct 2026
Resource limits
The project notes that in-memory storage limits capacity and says a couple of gigabytes of RAM can hold many plain-text secrets.vsecm.com · 5 Oct 2026
Project status
The project is in active maintenance mode while development focuses on SPIKE v1.0; new feature implementations are deferred during this period.vsecm.com · 5 Oct 2026
Security response
The stated target is to fix confirmed medium-or-higher severity vulnerabilities within 60 days and respond initially to vulnerability reports within 14 days.vsecm.com · 5 Oct 2026
License
The VSecM code is distributed under the BSD 2-Clause License.vsecm.com · 5 Oct 2026

Best VMware Secrets Manager alternatives

See all 20