Credctl
Replaces long-lived cloud access keys with short-lived credentials bound to a device's Secure Enclave.
This product replaces long-lived cloud access keys with short-lived credentials bound to a device's Secure Enclave, solving the problem of stolen or leaked cloud credentials. It targets developers, IT, and operations teams in companies of any size that use AWS or GCP. It is delivered as a command-line interface that requires no servers or agents, and it uses hardware-bound identities and OIDC federation to authenticate.
Key features
- Hardware-bound credentials via Secure Enclave
- Short-lived credentials expire in one hour
- Touch ID confirmation for every request
- Zero infrastructure: no servers or agents
- Single CLI binary talks directly to cloud provider
- OIDC federation setup for AWS and GCP
- Open source under Apache 2.0
Social posts
- No social media activity within the last 30 days
GTM channels
- Blog
- Community
- Docs
ICP
- Software developers
- Engineering teams
- DevOps sre teams