Skip to content

rsdouglas/janee

Secrets & Credentials

Secrets management for AI agents via MCP – injects API credentials, enforces policies, and logs every request without exposing raw keys to the agents

TypeScript Latest v0.7.0 · 3mo ago Security brief →

Features

  • Zero‑knowledge agents: call APIs without ever seeing keys
  • Full audit trail: log timestamp, method, path, status for each request
  • Request policies: allow/deny rules per capability (e.g., read‑only Stripe)
  • Session TTLs with instant revocation
  • Works with any MCP client (Claude Desktop, Cursor, OpenClaw, etc.)

Recent releases

View all 8 releases →
No immediate action
v0.7.0 New feature

--json flag

Config change
v0.6.0 Breaking risk
Auth

hmac → hmac-mexc

Config change
v0.5.1 Breaking risk
Auth

Binance removal

Config change
v0.5.0 New feature
Auth RBAC

Capability Management Commands

No immediate action
v0.4.5 New feature

JSON output for search

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
28
Forks
7
Languages
TypeScript HTML JavaScript
Downloads/week
4 ↓20%
NPM Maintainers
2
Contributors
3
TypeScript
Types included ✓

Install & Platforms

Install via
npm

Beta — feedback welcome: [email protected]