# MagicVault

> Updated 2026-09-09 · type: tool · category: ai-infrastructure · status: active · rev 1

MagicVault lets AI agents use credentials without seeing them — secrets go to approved fields, never into the prompt or logs.

- Open source: yes (MIT OR Apache-2.0)
- Self-hostable: yes
- Pricing model: free
- Best for: Builders of agent stacks that must act with real credentials (logins, API keys) without exposing them to the model.
- Last verified: 2026-09-09

- **Canonical:** https://gtmstacker.com/registry/tool/magicvault/
- **Source:** [github · MagicBeansAI/MagicVault](https://github.com/MagicBeansAI/MagicVault)
- **Tags:** ai-infrastructure, agent-security, secrets-management, credentials, governance, self-hostable
- **Repository:** https://github.com/MagicBeansAI/MagicVault

## Is MagicVault open source?

Yes, MagicVault is open source under the MIT OR Apache-2.0 license.

## How much does MagicVault cost?

MagicVault is free to use.

## Can I self-host MagicVault?

Yes, MagicVault can be self-hosted (the source is available under the MIT OR Apache-2.0 license).

## Alternatives & related

- [Geiger](https://gtmstacker.com/registry/tool/geiger/)


---

Open-source secrets layer (Rust) that lets agents use enrolled credentials without ever seeing them: it injects secrets into approved browser fields, HTTP requests or spawned processes while keeping them out of prompts, replies and audit logs. VERY EARLY.

## Provenance

- MIT OR Apache-2.0 independently WebFetch-verified 2026-09-09 (0★, 42 commits; Rust). Surfaced via the 2026-09-09 daily pull agent-safety cluster. Pre-traction — flagged as a reference to evaluate, not a dependency.
- Curated from the GTM Stacker signal registry (2026-09-09 pass: daily pull + viral-posts brief); license independently WebFetch-verified 2026-09-09.
