IaC Bazaar

Secrets & Key Management across clouds

Secret stores and KMS (Key Vault, Secrets Manager, KMS, Vault) with verified, least-privilege modules.

7 verified modules, 5 of them live-tested apply→verify→destroy; the rest are static-validated, live-test pending.

Compare by provider

ProviderModuleVerificationPrice
AWSKMS Key with Policy Patterns✓ live-tested$29.00
AWSSecrets Manager Secret✓ live-tested$29.00
AzureAzure Key Vault✓ live-tested$29.00
Google CloudCloud KMS Keyring & Keys✓ live-tested$29.00
Google CloudSecret Manager Secrets✓ live-tested$29.00
Multi-cloud & platform-agnosticVault Policies & Authstatic-validated$29.00
Oracle CloudVault, Keys & Secretsstatic-validated$29.00

How to choose

Use a KMS for encryption keys and envelope encryption; use a secrets manager for credentials with rotation. Vault fits multi-cloud or dynamic-secret needs.

When not to use

Never substitute environment variables or config files for these - but also do not store large blobs in a secrets store; it is not object storage.

Other solutions