After Dark Systems / Secret infrastructure

Keep your secrets.
Move your work forward.

Secrets, credentials, protected PDFs, and signing operations. One platform to connect the people, machines, and software that depend on them.

Scoped access. Version history. Built for automation.

Sculptural graphite vault with precision-cut brass frames
01 / A foundation for controlled access
From a single key to your infrastructureREST APIClient SDKsDevice identitiesHSM operationsProtected documents

01 / The platform

Control the secret.
Connect the workflow.

Give each application the access it needs, and give your team a consistent way to manage it.

A home for every credential

Manage passwords, SSH keys, certificates, service configuration, and other credential types in organized containers.

Access with boundaries

Use scoped API keys, expiring shares, and exact device grants. Keep signing operations separate from private key export.

Designed to be automated

Retrieve secrets by path, resolve named variables, and connect deployment workflows through the CLI, SDKs, Terraform, and Ansible.

Secret Server + DarkStorage

Keep your IP, secret.

Store encrypted PDFs and share watermarked previews with people in your account. Set an expiry, revoke access, and choose separately who can download the original or print pages.

Available when protected documents are enabled by your operator. Up to 8 MiB and 50 pages per PDF. View-only access withholds the original file; visible content can still be captured.

03 / The API

Your infrastructure.
Your interface.

A rich REST API for secrets, certificates, identity, signing, device access, and database credentials. Browse the endpoint directory or start with a client library.

REST / Path-based accessGET
curl --fail-with-body \
  https://api.secretserver.io/api/v1/s/production/db-password \
  -H "Authorization: Bearer $SS_API_KEY"
One stable path. Access checked on every request.

Put it to work

Build on a quieter foundation.

Read the documentation