99designs/aws-vault

A vault for securely storing and accessing AWS credentials in development environments

View on GitHub ↗Jump to charts ↓

Summary Information

Updated 59 minutes ago
Added to GitGenius on September 7th, 2026
Created on August 11th, 2015
Open Issues & Pull Requests: 2 (+0)
GitHub issues: Enabled
Number of forks: 829
Total Stargazers: 8,986 (+0)
Total Subscribers: 121 (+0)

Repository Insights (GitGenius)

Median issue/PR response: 26.0 days
Mean response time: 187.3 days
90th percentile: 684.6 days
Tracked items: 36

How this project is maintained

Around half of the issues opened in the past year never receive a reply. Only 0% of issues opened in the past year have been closed. Three people close 84% of everything that gets resolved.

Charts & Analytics

Fetching additional details & charts...

Issue Activity (beta)

Open issues: 0
New in 7 days: 0
Closed in 7 days: 0
Avg open age: N/A days
Stale 30+ days: 0
Stale 90+ days: 0

Recent activity

Opened in 7 days: 0
Closed in 7 days: 0
Comments in 7 days: 0
Events in 7 days: 0

Top labels

  • stale (12)
  • feature (11)

Most active issues this week

No issue events were indexed in the last 7 days.

Detailed Description

AWS Vault is a command-line tool that securely stores and accesses AWS credentials in development environments.

The tool solves the problem of credential exposure in development workflows by storing long-term IAM credentials in your operating system's secure keystore—macOS Keychain, Windows Credential Manager, or Linux secret services—rather than keeping them in plain text. When you need credentials, AWS Vault retrieves the stored credentials and uses Amazon's STS service to generate temporary credentials via GetSessionToken or AssumeRole API calls. These temporary credentials are then exposed to your shell and applications, expiring after a short period to reduce the risk of credential leakage. The tool integrates with your existing AWS CLI configuration in ~/.aws/config and profiles.

AWS Vault suits developers who want to eliminate long-term credentials from their local environment and shell history. It works across macOS, Windows, and Linux, with support for multiple secure backends including Keychain, Credential Manager, Secret Service implementations like Gnome Keyring and KWallet, Pass, and encrypted files. The tool is designed to complement rather than replace AWS CLI tools, making it suitable for teams already using standard AWS credential configuration workflows.

The project is no longer actively maintained and has been abandoned, with the README directing users to an active fork for ongoing updates and contributions.