CostPerSeat
For owners ↗
gethasp logo

IN THE FIELD GUIDE

gethasp

gethasp.com

Visit website ↗

Securely managing secrets for development tools and coding agents without exposing secret values in their context windows. Encrypted local vault using Argon2id and AEAD encryption at rest to store secrets securely. Supports multiple delivery modes for secrets to applications: environment variables, temporary files with restricted permissions, and temporary dotenv files outside the repository.

THE PRODUCT, BEYOND THE PITCH

Editorially reviewed · Sources checked Sep 10, 2026

Compare

A good fit for

  • Developers and teams needing local-first, end-to-end secret management without relying on cloud accounts or telemetry.

Know the limitations

  • Secrets are only accessible within the local trust boundary and project roots; no cloud or remote secret sharing is supported.
  • The 24-hour hard grant ceiling cannot be lifted by any policy, limiting secret access duration strictly.

What you can do

  • Securely managing secrets for development tools and coding agents without exposing secret values in their context windows.

Features

  • Encrypted local vault using Argon2id and AEAD encryption at rest to store secrets securely.
  • Supports multiple delivery modes for secrets to applications: environment variables, temporary files with restricted permissions, and temporary dotenv files outside the repository.
  • Agent profiles for coding agents that receive secret references and metadata but never the secret values themselves, supporting specific agents like claude-code, codex-cli, cursor, aider, hermes, openclaw, and a generic profile for others.
  • Short-lived, scoped grants that deliver secrets only to a specific brokered run with a hard 24-hour ceiling enforced by the daemon.
  • Repo binding to define project roots as policy boundaries and manage workflow-specific secret delivery targets without storing secrets in the repository.

Integrations

  • Supports integration with multiple coding agents such as claude-code, codex-cli, cursor, aider, hermes, openclaw, and generic CLI or MCP agents.

Platforms & data export

  • Available for macOS and Linux, with installation options including Homebrew and building from source.

THE COST FOR YOUR TEAM

Go beyond the starting price.

Published plan prices for your team size and usage. Results update as you type. Taxes, currency conversion and unlisted add-ons are excluded, and anything the source did not state is called out rather than guessed.

Known monthly subtotal

$0.00/month

1 of 1 tools could not be priced with these inputs, so this is not the full cost.

Plan costs based on your requirements
Tool / planMonthlyPer yearWhat this assumes
gethasp logogethaspNo pricing recorded yet. Check the official site, or ask the owner to add it.

A practical workflow

  1. Setup involves explicit initial configuration including vault creation, repo binding, and agent connection, followed by invisible runtime secret delivery.
  2. Start and prove steps include guided setup, repo bootstrap, vault creation, health diagnosis, and brokered first-proof check.
  3. Secret management commands allow adding, importing, capturing, updating, revealing, copying, exposing, and hiding secrets without creating loose files.
  4. Repo binding commands enable inspecting requirements, listing targets, adopting repos, unbinding stale ones, and scanning for leaked managed values.
  5. Runtime commands include starting or inspecting the daemon, managing broker sessions, checking reachability, and viewing vault and daemon state.

Based on the sources below. Editorial review does not imply hands-on product testing.

Alternatives to explore

Filter alternatives →

Candidates based on category and primary feature. Check feature and pricing differences before switching.

Plan a switch from gethasp

What changed

Changes to the facts recorded here, not a live scan of every vendor update. Save this tool to follow updates in your account.

No changes recorded yet.

Sources & research

How we research, calculate costs, and distinguish sponsorship