IaC Bazaar

Secrets & Key Management across clouds

Secret stores and KMS (Key Vault, Secrets Manager, KMS, Vault) with verified, least-privilege modules.

7 verified modules, 2 of them live-tested apply→verify→destroy; the rest are static-validated, live-test pending.

Compare by provider

ProviderModuleVerificationPrice
AWSKMS Key with Policy Patterns✓ live-tested$49.00
AWSSecrets Manager Secret✓ live-tested$49.00
AzureAzure Key Vaultstatic-validated$49.00
Google CloudCloud KMS Keyring & Keysstatic-validated$49.00
Google CloudSecret Manager Secretsstatic-validated$49.00
Multi-cloud & platform-agnosticVault Policies & Authstatic-validated$129.00
Oracle CloudVault, Keys & Secretsstatic-validated$129.00

How to choose

Use a KMS for encryption keys and envelope encryption; use a secrets manager for credentials with rotation. Vault fits multi-cloud or dynamic-secret needs.

When not to use

Never substitute environment variables or config files for these — but also do not store large blobs in a secrets store; it is not object storage.

Other solutions