Sign inSign up

debeski/decrypter

By debeski

•Updated 5 months ago

SOPS based encrypter/decrypter + Compose Launcher with in-memory env injection.

Image
Security
Integration & delivery
Web servers
0

1.3K

debeski/decrypter repository overview

⁠decrypter

Secrets. Docker. Silence.

It manages SOPS secrets and orchestrates Compose. No local dependencies. Only Docker.

⁠setup

Grab start.sh (or start.ps1). Put it in your project root.

⁠the routine

⁠1. secrets

If you need a key:

./start.sh keygen

To hide your .env:

./start.sh encrypt <public_key>
# or
./start.sh encrypt --passphrase "..."

To see the truth:

./start.sh decrypt <private_key>
⁠2. deployment

Feed it a key. It starts the services.

./start.sh -k <private_key>

⁠the surface

flagresult
-k, --keyThe key. Mandatory for reality.
-p, --passphraseWords instead of keys.
-d, --devDevelopment mode. Bypasses the weight of secrets.
-u, --updatePull fresh images.
-b, --buildRebuild. Start over.
--downStop everything.
-v, --volumesRemove volumes too.

⁠mechanics

  • Version: Every service gets DECRYPTER_VERSION.
  • UI: It streams progress on one line. No scrolling.
  • Update: ./start.sh --update keeps the tool from aging.

⁠why

Installing sops, age, and python everywhere is a burden. This is just a container. It does what it must.

Tag summary

Content type

Image

Digest

sha256:2edf4abc3…

Size

87.2 MB

Last updated

6 months ago

docker pull debeski/decrypter