Pinned Tweet
Automic Vault
14 posts

Automic Vault
@AutomicVault
Secure the tools you `brew install`. A new kind of package manager for a new kind of threat model. From the creator of Homebrew.
Joined Mayıs 2026
2 Following90 Followers

Several releases over the last few days. Most interestingly full encrypted `.env` support using @dotenvx compatible encryption. Use Automic Vault locally and dotenvx in prod.

English

v1.17.0 includes detection and mitigation for several new secret exposures including your github token hiding behind a simple `git` invocation.
github.com/automic-vault/…
English

Automic Vault patches it so `gh auth token` has a human approval gate.
Stop malware and agents getting your keys.
Jiahan Chen@jiahan_c
Do you know that using GitHub CLI (gh) may expose you to supply-chain attacks? It stores a long-lived GitHub token on your machine, which can be stolen by any malicious scripts. This is what happened in the recent Nx Console supply-chain compromise, which led to GitHub’s internal source code being leaked.
English
Automic Vault retweeted

Do you know that using GitHub CLI (gh) may expose you to supply-chain attacks?
It stores a long-lived GitHub token on your machine, which can be stolen by any malicious scripts.
This is what happened in the recent Nx Console supply-chain compromise, which led to GitHub’s internal source code being leaked.

English

v1.7.0: faster & more robust package updates; >17,000 packages scanned for isotopic security; 99 isotopes keeping your tool secrets out of plain text.
github.com/automic-vault/…

English

👋 We're Automic Vault.
Your agents are autonomous. Your secrets are in plain text. Your tools can delete prod with one command.
We fix that — at the layer that actually matters.
Built by @mxcl, creator of Homebrew.

English



