Live data from Hacker News

Show HN: Garnet – a developer-friendly, open-source secrets manager

usegarnet.com

21–30 of 38 posts

Re: Show HN: Garnet – a developer-friendly, open-source secrets manager

#21
post #19

Managing secrets is critical in this day and age for individuals and organizations of all kinds and sizes. Many developers currently find it painful to manage their app configurations and secrets, and this pain grows with stack complexity and team size. This makes building and deploying manual, time-consuming and insecure. Today there are great solutions in this space, however, from our personal experience as develop…

Hello can you please stop creating fake accounts with the purpose of boosting your post here. This is otherwise something interesting but im immediately turned off from ever even looking at it if this is how you try and promote your product.

[deleted]

Re: Show HN: Garnet – a developer-friendly, open-source secrets manager

#22
post #18
post #17

I have been working with azure key vault for the past year and have definitely felt the need for a secrets manager that's more developer focused and easy to use. Most secret managers out there are tied to cloud service providers and do not take a holistic view of the problem. Glad to see the focus is shifting towards a more generalistic solution

This account was made 6 minutes ago.

Hi Bogota,

Yes i created my account 6 mins ago but i am not exactly sure why this is so concerning. I have been part of the beta testers for garnet and am currently an experienced infrastructure engineer with experience in both azure and aws. I created my account to provide insights on this post as i have already used the product.

Re: Show HN: Garnet – a developer-friendly, open-source secrets manager

#23
post #19

Managing secrets is critical in this day and age for individuals and organizations of all kinds and sizes. Many developers currently find it painful to manage their app configurations and secrets, and this pain grows with stack complexity and team size. This makes building and deploying manual, time-consuming and insecure. Today there are great solutions in this space, however, from our personal experience as develop…

Hello can you please stop creating fake accounts with the purpose of boosting your post here. This is otherwise something interesting but im immediately turned off from ever even looking at it if this is how you try and promote your product.

These are not fake accounts, but actual developers in our community who have been using Garnet. While a couple of these accounts could be newly created (as not everyone has a HN account, and we announced the launch in our community forum), all comments are actual, and anyone is free to share their opinion on the project (negative or positive). We’d really appreciate if you don’t sabotage the post by responding on every comment, but would love to hear your actual feedback.

Re: Show HN: Garnet – a developer-friendly, open-source secrets manager

#24
post #15

This post is full of bots. All the original posts are by accounts that are new and the comments are very shallow.

These are not fake accounts, but actual developers in our community who have been using Garnet. While a couple of these accounts could be newly created (as not everyone has a HN account, and we announced the launch in our community forum), all comments are actual, and anyone is free to share their opinion on the project (negative or positive). We’d really appreciate if you don’t sabotage the post by responding on every comment, but would love to hear your actual feedback.

Re: Show HN: Garnet – a developer-friendly, open-source secrets manager

#25
post #19

Earlier quoted context omitted.

Hello can you please stop creating fake accounts with the purpose of boosting your post here. This is otherwise something interesting but im immediately turned off from ever even looking at it if this is how you try and promote your product.

These are not fake accounts, but actual developers in our community who have been using Garnet. While a couple of these accounts could be newly created (as not everyone has a HN account, and we announced the launch in our community forum), all comments are actual, and anyone is free to share their opinion on the project (negative or positive). We’d really appreciate if you don’t sabotage the post by responding on eve…

I did post comments to actually ask what people like about it and why they use this over vault. No one has actually posted anything of substance so please don’t pretend like i am sabotaging you by asking valid questions.

Re: Show HN: Garnet – a developer-friendly, open-source secrets manager

#26
post #22
post #18

Earlier quoted context omitted.

This account was made 6 minutes ago.

Hi Bogota, Yes i created my account 6 mins ago but i am not exactly sure why this is so concerning. I have been part of the beta testers for garnet and am currently an experienced infrastructure engineer with experience in both azure and aws. I created my account to provide insights on this post as i have already used the product.

It normally wouldn’t matter but in combination with all the other newly created accounts and comments of no substance suddenly your account age comes into question.

That’s great you have experience in aws and azure i do as well but i don’t see how this product facilitates auth in those environments outside of being able to deploy it there.

Re: Show HN: Garnet – a developer-friendly, open-source secrets manager

#27
post #15

This post is full of bots. All the original posts are by accounts that are new and the comments are very shallow.

These are not fake accounts, but actual developers in our community who have been using Garnet. While a couple of these accounts could be newly created (as not everyone has a HN account, and we announced the launch in our community forum), all comments are actual, and anyone is free to share their opinion on the project (negative or positive). We’d really appreciate if you don’t sabotage the post by responding on eve…

No need to double post please answer in the other thread.

Re: Show HN: Garnet – a developer-friendly, open-source secrets manager

#29
post #10

Do you have a comparison of this to open source vault? The biggest issue with secret managers isn’t storage though its authenticating clients. Does this support auth via IAM, k8s, okta, ldap, sso providers?

Very valid point - the main problem to solve here isn't storage and encryption. We think the clouds do a great job for that, hence our self-hosted approach.

It’s important to note that the goal here is not to replace Vault. Vault pioneered a lot of best practices in this space, which we build on top of. The gap we want to fill is of complexity and developer-experience, while playing well with existing tools, as stated.

Re: identity – it’s on our immediate roadmap to integrate with identity providers (similar to Vault). We offer a similar model of pluggable secrets backends inspired by Vault (currently supporting DB’s such as Postgres and Mongo). If you want to use your existing SSO provider, our private enterprise beta comes with WorkOS integration. Please reach out at support@usegarnet.com if you’re interested, and we’d love to talk more about your specific needs!

Re: Show HN: Garnet – a developer-friendly, open-source secrets manager

#30
post #26
post #22

Earlier quoted context omitted.

Hi Bogota, Yes i created my account 6 mins ago but i am not exactly sure why this is so concerning. I have been part of the beta testers for garnet and am currently an experienced infrastructure engineer with experience in both azure and aws. I created my account to provide insights on this post as i have already used the product.

It normally wouldn’t matter but in combination with all the other newly created accounts and comments of no substance suddenly your account age comes into question. That’s great you have experience in aws and azure i do as well but i don’t see how this product facilitates auth in those environments outside of being able to deploy it there.

I will simply converse on substance henceforth.

I believe their current focus is on injecting secrets into apps through the CLI, and they’re not natively syncing with cloud provider APIs as of yet.

Integration with identity providers is definitely a feature that would be required for adoption in the enterprise. It seems like that is on their roadmap, and their closed enterprise beta comes with WorkOS integration.

Post reply on HN