Sign inSign up

wizmacaucom/bytestash

By wizmacaucom

•Updated about 12 hours ago

Code snippet manager with REST API and MCP server (fork of jordan-dalby/ByteStash)

Image
0

198

wizmacaucom/bytestash repository overview

⁠ByteStash

A self-hosted code snippet manager with a React web UI, REST API, and MCP server.

This image is built from the fork https://github.com/lamjack/ByteStash⁠ (upstream: https://github.com/jordan-dalby/ByteStash⁠).

ByteStash screenshot

⁠Tags

  • latest — most recent stable build
  • <semver> — release builds, e.g. 1.0.1
  • <YYYY.MM.DD> — dated builds, e.g. 2026.10.06

Platforms: linux/amd64, linux/arm64.

⁠Quick start

docker run -d --name bytestash -p 5000:5000 -v /your/snippet/path:/data/snippets -e JWT_SECRET=change-me wizmacaucom/bytestash:latest

Then open http://localhost:5000/⁠ and create an account.

⁠Docker Compose

services:
  bytestash:
    image: "wizmacaucom/bytestash:latest"
    restart: always
    volumes:
      - /your/snippet/path:/data/snippets
    ports:
      - "5000:5000"
    environment:
      # See https://github.com/jordan-dalby/ByteStash/wiki/FAQ#environment-variables
      BASE_PATH: ""
      JWT_SECRET: your-secret
      TOKEN_EXPIRY: 24h
      ALLOW_NEW_ACCOUNTS: "true"
      DEBUG: "true"
      DISABLE_ACCOUNTS: "false"
      DISABLE_INTERNAL_ACCOUNTS: "false"

      # See https://github.com/jordan-dalby/ByteStash/wiki/Single-Sign%E2%80%90on-Setup for more info
      OIDC_ENABLED: "false"
      OIDC_DISPLAY_NAME: ""
      OIDC_ISSUER_URL: ""
      OIDC_CLIENT_ID: ""
      OIDC_CLIENT_SECRET: ""
      OIDC_SCOPES: ""

⁠Environment variables

VariableDefaultDescription
JWT_SECRETyour-secret-keySecret used to sign JWT auth tokens. Set a strong value in production.
JWT_SECRET_FILEunsetPath to a file containing the JWT secret; overrides JWT_SECRET when set.
TOKEN_EXPIRY24hJWT token lifetime.
ALLOW_NEW_ACCOUNTSfalseAllow registration of new accounts when set to true.
ALLOW_PASSWORD_CHANGESfalseAllow users to change their password when set to true.
DISABLE_ACCOUNTSfalseDisable account login entirely when set to true.
DISABLE_INTERNAL_ACCOUNTSfalseDisable local username/password accounts (e.g. when using OIDC only).
ADMIN_USERNAMESunsetComma-separated list of usernames granted admin rights.
BASE_PATH`` (empty)URL path prefix the app is served under, e.g. /bytestash.
DEBUGfalseEnable debug logging when set to true.
OIDC_ENABLEDfalseEnable OpenID Connect single sign-on when set to true.
OIDC_DISPLAY_NAMESingle Sign-OnLabel shown on the SSO login button.
OIDC_ISSUER_URLunsetOIDC issuer/discovery URL.
OIDC_CLIENT_IDunsetOIDC client ID.
OIDC_CLIENT_SECRETunsetOIDC client secret.
OIDC_SCOPESopenid profile emailSpace-separated OIDC scopes.

⁠Volumes

  • /data/snippets — SQLite database and all persistent data.

⁠API and MCP

  • REST API with Swagger UI at /api-docs (or <BASE_PATH>/api-docs when BASE_PATH is set).
  • MCP server endpoint at /mcp (or <BASE_PATH>/mcp), authenticated with an API key generated in the app (passed as x-api-key header or key query parameter). Connect a client to <base-url>/mcp.
  • Documentation wiki: https://github.com/jordan-dalby/ByteStash/wiki⁠

⁠Source and license

Tag summary

Content type

Image

Digest

sha256:b04247b8e…

Size

89.3 MB

Last updated

about 12 hours ago

docker pull wizmacaucom/bytestash