SOPS based encrypter/decrypter + Compose Launcher with in-memory env injection.
1.3K
Secrets. Docker. Silence.
It manages SOPS secrets and orchestrates Compose. No local dependencies. Only Docker.
Grab start.sh (or start.ps1). Put it in your project root.
If you need a key:
./start.sh keygen
To hide your .env:
./start.sh encrypt <public_key>
# or
./start.sh encrypt --passphrase "..."
To see the truth:
./start.sh decrypt <private_key>
Feed it a key. It starts the services.
./start.sh -k <private_key>
| flag | result |
|---|---|
-k, --key | The key. Mandatory for reality. |
-p, --passphrase | Words instead of keys. |
-d, --dev | Development mode. Bypasses the weight of secrets. |
-u, --update | Pull fresh images. |
-b, --build | Rebuild. Start over. |
--down | Stop everything. |
-v, --volumes | Remove volumes too. |
DECRYPTER_VERSION../start.sh --update keeps the tool from aging.Installing sops, age, and python everywhere is a burden. This is just a container. It does what it must.
Content type
Image
Digest
sha256:2edf4abc3…
Size
87.2 MB
Last updated
6 months ago
docker pull debeski/decrypter