Fetching from the wire…
Public story · 2026-02-24 · source-backed
Encrypts your .env secrets so AI agents literally cannot read them. AES-256-GCM + Argon2id encryption with intentionally no get or export commands — secrets go in but can't come out to an agent. Brand new (Feb 22) and solving a universal pain point as agents gain more filesystem access. Small, auditable Rust codebase.
Each link below shares sources, entities, or timing with this story.
Shared entities / Same source domain / Shared topic / What happened next
Both cover AES, GCM, Rust; reported by the same outlet (github.com); overlapping topics (access, agent, secret).
Codex CLI uses Rust / Shared entity: Rust / What happened next
Linked by a graph relationship (Codex CLI uses Rust); both cover Rust; picks up the Rust thread on 2026-05-17.
Mnemo built by Rust / Shared entity: Rust / Same source domain / What happened next / Tension
Linked by a graph relationship (Mnemo built by Rust); both cover Rust; reported by the same outlet (github.com).
Macro uses Rust / Shared entity: Rust / Same source domain / What happened next
Linked by a graph relationship (Macro uses Rust); both cover Rust; reported by the same outlet (github.com).
Linked by a graph relationship (Macro uses Rust); both cover Rust; reported by the same outlet (github.com).
Zerostack uses Rust / Shared entity: Rust / Same source domain / What happened next
Linked by a graph relationship (Zerostack uses Rust); both cover Rust; reported by the same outlet (github.com).
Shared entity: Rust / Same source domain / Shared topic / What happened next / Tension
Both cover Rust; reported by the same outlet (github.com); overlapping topics (export, rust).
Goose uses Rust / Shared topic
Linked by a graph relationship (Goose uses Rust); overlapping topics (access, agent).