Skip to content

An open-source secrets and TOTP vault designed as a security control plane for developers.

License

Notifications You must be signed in to change notification settings

skygenesisenterprise/aether-vault

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Β 

History

345 Commits
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 

πŸ” Aether Vault

License Go Gin TypeScript Next.js React Prisma GitHub App

πŸ”₯ Modern Enterprise Secrets Management Platform - Evolved Hybrid Architecture with Complete Package Ecosystem

A next-generation secrets management platform that has evolved significantly from its initial hybrid architecture. Now featuring a complete authentication system, comprehensive package ecosystem, GitHub Marketplace integration, and enterprise-ready monorepo design with enhanced security capabilities.

πŸš€ Quick Start β€’ πŸ“‹ What's New β€’ πŸ“Š Current Status β€’ πŸ› οΈ Tech Stack β€’ πŸ“¦ Package Ecosystem β€’ πŸ“ Architecture β€’ 🀝 Contributing

GitHub stars GitHub forks GitHub issues


🌟 What is Aether Vault?

Aether Vault is a comprehensive secrets management platform that has evolved dramatically from its initial concept. Starting as a hybrid Go/TypeScript architecture, it has grown into a complete ecosystem featuring authentication, package SDKs, GitHub integration, and enterprise-ready capabilities.

🎯 Our Evolved Vision

  • πŸš€ Enhanced Hybrid Architecture - Go 1.21+ backend + TypeScript 5 frontend + Package Ecosystem
  • πŸ“¦ Complete Package SDKs - GitHub App, Go SDK, Node.js SDK, Python SDK, VSCode, Docker for maximum integration
  • πŸ” Complete Authentication System - JWT-based system with login/register forms and context
  • ⚑ High-Performance Backend - Go-based server with encrypted secrets storage
  • 🎨 Modern Frontend - Next.js 16 + React 19.2.1 + shadcn/ui component library
  • πŸ”— GitHub Marketplace Integration - Verified GitHub App for secrets orchestration
  • πŸ—οΈ Enterprise-Ready Design - Scalable, secure, and maintainable architecture
  • πŸ“š Comprehensive Documentation - Package-specific docs and API references
  • πŸ› οΈ Developer-Friendly - Simplified commands, hot reload, TypeScript strict mode

πŸ†• What's New - Recent Evolution

🎯 Major Additions in v2.0+

πŸ“¦ Complete Package Ecosystem (NEW)

  • βœ… GitHub App Package - Verified Marketplace application for secrets orchestration
  • βœ… Go SDK Package - Native Go client library and CLI tools
  • βœ… Node.js SDK Package - Universal TypeScript SDK for Node.js and browser
  • βœ… Python SDK Package - Python client library for automation and data science
  • βœ… VSCode Package - VSCode extension for direct integration
  • βœ… Docker Package - Docker runtime for containerized deployment
  • βœ… Package Documentation - Complete docs for each package

πŸ”— GitHub Integration (NEW)

  • βœ… Verified GitHub App - Secrets intelligence and workflow orchestration
  • βœ… Multi-Target Secrets Detection - Support for dev, staging, production environments
  • βœ… Workflow Orchestration - Automatic GitHub Actions triggering
  • βœ… Aether Vault Notifications - Integrated security alert system

πŸ—οΈ Enhanced Architecture (IMPROVED)

  • βœ… Package-Based Structure - Modular design with clear separation
  • βœ… Cross-Package Integration - Seamless interaction between packages
  • βœ… Docker Deployment - Production-ready containers for all packages
  • βœ… Security Enhancements - Rate limiting, input validation, CORS, encryption

πŸ—„οΈ Modernized Database (IMPROVED)

  • βœ… Prisma 7.2.0 - Modern ORM with TypeScript strict mode
  • βœ… PostgreSQL - Primary database for production
  • βœ… Automatic Migrations - Automated schema management
  • βœ… Prisma Studio - Database management interface

πŸ“Š Current Status

βœ… Rapid Evolution: From basic hybrid architecture to complete ecosystem with GitHub Marketplace integration.

βœ… Currently Implemented

πŸ—οΈ Core Foundation

  • βœ… Complete Authentication System - JWT with login/register forms and React context
  • βœ… Hybrid Monorepo Architecture - Go backend + TypeScript frontend workspaces
  • βœ… Go Backend Server - High-performance API with encrypted secrets storage
  • βœ… Next.js 16 Frontend - Modern React 19.2.1 with shadcn/ui + Tailwind CSS v4
  • βœ… Secrets Management - Encrypted storage with user models and access controls
  • βœ… CLI Tools - Complete command-line interface for server management

πŸ“¦ Package Ecosystem (NEW)

  • βœ… GitHub App Package - Verified Marketplace app with secrets orchestration
  • βœ… Go SDK Package - Native Go client library and CLI tools
  • βœ… Node.js SDK Package - Universal TypeScript SDK with examples
  • βœ… Python SDK Package - Python client library with complete examples
  • βœ… VSCode Package - VSCode extension for integrated development
  • βœ… Docker Package - Containerized runtime for deployment
  • βœ… Package Documentation - Complete docs for all packages

πŸ”— GitHub Integration (NEW)

  • βœ… Secrets Type Detection - Intelligent pattern recognition for all secret types
  • βœ… Multi-Target Support - Complex environment management (+dev+staging+prod)
  • βœ… Workflow Orchestration - Automatic GitHub Actions triggering
  • βœ… Aether Vault Integration - Complete security notification system

πŸ—„οΈ Database Infrastructure

  • βœ… Prisma ORM - Modern object-relational mapping with TypeScript
  • βœ… PostgreSQL - Robust database for production
  • βœ… Automatic Migrations - Versioned schema management
  • βœ… Prisma Studio - Web-based database management interface

πŸ› οΈ Development Infrastructure

  • βœ… Development Environment - Hot reload, TypeScript strict mode, Go modules
  • βœ… Docker Deployment - Production-ready containers for all packages
  • βœ… Security Implementation - Rate limiting, validation, security headers, encryption
  • βœ… Structured Logging - Complete logging with audit trail

πŸ”„ In Development

  • TOTP Dashboard - Complete CRUD interface for TOTP administration
  • Role-Based Access Control - Granular permissions and role management
  • Security Enhancements - Advanced rate limiting, input validation, CORS
  • API Documentation - Complete API documentation and testing
  • Testing Suite - Unit and integration tests for all packages

πŸ“‹ Planned Features

  • Secrets Rotation - Automatic secrets rotation with policies
  • Web Administration Dashboard - Complete server management interface
  • Audit & Compliance - Advanced audit trail and compliance reporting
  • Advanced Security - HSM integration, advanced encryption
  • Mobile Application - React Native companion app

πŸš€ Quick Start

πŸ“‹ Prerequisites

  • Go 1.21.0 or higher (for backend)
  • Node.js 18.0.0 or higher (for frontend)
  • pnpm 9.0.0 or higher (recommended package manager)
  • PostgreSQL 14.0 or higher (for database)
  • Docker (optional, for package deployment)
  • Make (for command shortcuts - included with most systems)

πŸ”§ Installation & Setup

  1. Clone the repository

    git clone https://github.com/skygenesisenterprise/aether-vault.git
    cd aether-vault
  2. Quick start (recommended)

    # One-command setup and start
    make quick-start
  3. Manual setup

    # Install Go dependencies
    cd server && go mod download && cd ..
    
    # Install Node.js dependencies
    make install
    
    # Environment setup
    make env-dev
    
    # Database initialization
    make db-migrate
    
    # Start development servers
    make dev

🌐 Access Points

Once running, you can access:

🎯 Enhanced Make Commands

# πŸš€ Quick Start & Development
make quick-start          # Install, migrate, and start dev servers
make dev                 # Start all services (frontend + backend)
make dev-frontend        # Frontend only (port 3000)
make dev-backend         # Backend only (port 8080)

# πŸ“¦ Package Development (NEW)
make dev-github          # Start GitHub App development
make build-packages      # Build all packages
make test-packages       # Test all packages

# πŸ—„οΈ Database
make db-studio           # Open Prisma Studio
make db-migrate          # Run migrations
make db-seed             # Seed development data
make db-generate         # Generate Prisma client

# πŸ”§ Go Backend Commands
make go-server           # Start Go server directly
make go-build            # Build Go binary
make go-test             # Run Go tests

# πŸ—οΈ Building & Production
make build               # Build all packages
make start               # Start production servers

# πŸ”§ Code Quality & Testing
make lint                # Lint all packages
make typecheck           # Type check all packages
make format              # Format code with Prettier

# πŸ› οΈ Utilities
make help                # Show all available commands
make status              # Show project status
make health              # Check service health

πŸ’‘ Tip: Run make help to see all available commands organized by category.


πŸ› οΈ Tech Stack

🎨 Frontend Layer

Next.js 16 + React 19.2.1 + TypeScript 5
β”œβ”€β”€ 🎨 Tailwind CSS v4 + shadcn/ui (Styling & Components)
β”œβ”€β”€ πŸ” JWT Authentication (Complete Implementation)
β”œβ”€β”€ πŸ›£οΈ Next.js App Router (Routing)
β”œβ”€β”€ πŸ“ TypeScript Strict Mode (Type Safety)
β”œβ”€β”€ πŸ”„ React Context (State Management)
└── πŸ”§ ESLint + Prettier (Code Quality)

βš™οΈ Backend Layer

Go 1.21+ + Gin Framework
β”œβ”€β”€ πŸ—„οΈ Prisma ORM + PostgreSQL (Database Layer)
β”œβ”€β”€ πŸ” JWT Authentication (Complete Implementation)
β”œβ”€β”€ πŸ›‘οΈ Middleware (Security, CORS, Logging)
β”œβ”€β”€ 🌐 HTTP Router (Gin Router)
β”œβ”€β”€ πŸ“¦ JSON Serialization (Native Go)
└── πŸ“Š Structured Logging (Zerolog)

πŸ“¦ Package Ecosystem Layer (NEW)

Multi-Language Package SDKs
β”œβ”€β”€ πŸš€ GitHub App (TypeScript + Fastify)
β”‚   β”œβ”€β”€ Secrets Orchestration
β”‚   β”œβ”€β”€ Webhook Security
β”‚   └── Aether Vault Integration
β”œβ”€β”€ 🐹 Go SDK (Native Go)
β”‚   β”œβ”€β”€ High-Performance Client
β”‚   β”œβ”€β”€ CLI Tools
β”‚   └── Go Modules Support
β”œβ”€β”€ πŸ“¦ Node.js SDK (TypeScript)
β”‚   β”œβ”€β”€ Universal Client (Node.js + Browser)
β”‚   β”œβ”€β”€ Authentication Handling
β”‚   └── Comprehensive Examples
β”œβ”€β”€ 🐍 Python SDK (Python)
β”‚   β”œβ”€β”€ Python Client Library
β”‚   β”œβ”€β”€ Automation Support
β”‚   └── Data Science Integration
β”œβ”€β”€ πŸ’» VSCode Extension (TypeScript)
β”‚   β”œβ”€β”€ Editor Integration
β”‚   β”œβ”€β”€ Syntax Highlighting
β”‚   └── Snippets & Auto-completion
└── 🐳 Docker Runtime (Go)
    β”œβ”€β”€ Containerized Runtime
    β”œβ”€β”€ Secrets Injection
    └── Health Monitoring

πŸ—„οΈ Data Layer

PostgreSQL + Prisma ORM
β”œβ”€β”€ πŸ—οΈ Schema Management (Auto-migration)
β”œβ”€β”€ πŸ” Query Builder (Type-Safe Queries)
β”œβ”€β”€ πŸ”’ Encryption at Rest (AES-256)
β”œβ”€β”€ πŸ‘€ User & Secrets Models (Complete Implementation)
β”œβ”€β”€ πŸ“ˆ Audit Trail (Security Logging)
└── 🎯 Prisma Studio (Web Management Interface)

πŸ—οΈ Evolved Monorepo Infrastructure

Make + pnpm Workspaces + Go Modules + Package Ecosystem
β”œβ”€β”€ πŸ“¦ app/ (Next.js Frontend - TypeScript)
β”œβ”€β”€ βš™οΈ server/ (Gin API - Go)
β”œβ”€β”€ πŸ› οΈ cmd/ (CLI Tools - Go)
β”œβ”€β”€ πŸ”§ tools/ (Development Utilities - TypeScript)
β”œβ”€β”€ πŸ“š services/ (Core Vault Services - TypeScript)
β”œβ”€β”€ πŸ—‚οΈ routers/ (API Routing - TypeScript)
β”œβ”€β”€ πŸ—„οΈ prisma/ (Database Management - Prisma)
β”œβ”€β”€ πŸ“¦ package/ (Package Ecosystem - NEW)
β”‚   β”œβ”€β”€ github/ (GitHub App - TypeScript)
β”‚   β”œβ”€β”€ golang/ (Go SDK - Go)
β”‚   β”œβ”€β”€ node/ (Node.js SDK - TypeScript)
β”‚   β”œβ”€β”€ python/ (Python SDK - Python)
β”‚   β”œβ”€β”€ vscode/ (VSCode Extension - TypeScript)
β”‚   └── docker/ (Docker Runtime - Go)
└── 🐳 docker/ (Container Configuration)

πŸ“¦ Package Ecosystem

🎯 New Package Architecture

The project has evolved to include a comprehensive package ecosystem:

package/
β”œβ”€β”€ github/                    # πŸš€ GitHub App for Secrets Orchestration
β”‚   β”œβ”€β”€ Secrets Detection     # Intelligent pattern recognition
β”‚   β”œβ”€β”€ Workflow Orchestration # GitHub Actions integration
β”‚   └── Aether Vault Integration
β”œβ”€β”€ golang/                   # 🐹 Go SDK & CLI Tools
β”‚   β”œβ”€β”€ Native Go Client      # High-performance HTTP client
β”‚   └── CLI Tools            # Command-line utilities
β”œβ”€β”€ node/                     # πŸ“¦ Node.js/TypeScript SDK
β”‚   β”œβ”€β”€ Universal Client      # Node.js + Browser support
β”‚   └── Usage Examples        # Comprehensive examples
β”œβ”€β”€ python/                   # 🐍 Python SDK
β”‚   β”œβ”€β”€ Python Client         # Native Python integration
β”‚   └── Automation Tools     # Scripting and data science
β”œβ”€β”€ vscode/                   # πŸ’» VSCode Extension
β”‚   β”œβ”€β”€ Editor Integration   # Integrated development support
β”‚   └── Auto-completion       # Snippets and suggestions
└── docker/                   # 🐳 Docker Runtime
    β”œβ”€β”€ Containerized Runtime  # Execution environment
    └── Secrets Injection     # Secret management in containers

πŸš€ GitHub App Package

Purpose: Verified GitHub Marketplace application for secrets orchestration.

Key Features:

  • βœ… Secrets type detection (API keys, database, certificates, tokens)
  • βœ… Multi-target secrets support (+dev+staging+prod)
  • βœ… Workflow orchestration with GitHub Actions
  • βœ… Aether Vault notification integration
  • βœ… Webhook security with HMAC-SHA256
  • βœ… Docker deployment ready

Usage:

cd package/github
pnpm install && pnpm dev
# or
docker-compose up -d

🐹 Go SDK Package

Purpose: Native Go SDK and CLI tools for Aether Vault integration.

Key Features:

  • βœ… Native Go client library
  • βœ… CLI tools for vault management
  • βœ… High-performance HTTP client
  • βœ… Type-safe Go structs
  • βœ… Go modules support

Usage:

import "github.com/skygenesisenterprise/aether-vault/package/golang"

client := golang.NewClient("http://localhost:8080", "your-api-key")
secret, err := client.Secrets.Get("database-url")

πŸ“¦ Node.js SDK Package

Purpose: Universal TypeScript SDK for Node.js and browser environments.

Key Features:

  • βœ… Universal client (Node.js + Browser)
  • βœ… TypeScript strict mode
  • βœ… Authentication handling
  • βœ… Secrets management capabilities
  • βœ… Comprehensive examples

Usage:

import { AetherVaultClient } from "@aether-vault/node";

const client = new AetherVaultClient({
  baseURL: "http://localhost:8080",
  apiKey: "your-api-key",
});

await client.secrets.create({
  name: "database-url",
  value: "postgresql://...",
  environment: "production",
});

🐍 Python SDK Package

Purpose: Python client library for automation workflows and data science.

Key Features:

  • βœ… Native Python client
  • βœ… Automation scripts support
  • βœ… Data science integration
  • βœ… Type hints and documentation
  • βœ… pip installation support

Usage:

from aether_vault import AetherVaultClient

client = AetherVaultClient(
    base_url="http://localhost:8080",
    api_key="your-api-key"
)

secret = client.secrets.get("database-url")

πŸ’» VSCode Package

Purpose: VSCode extension for integrated development with Aether Vault.

Key Features:

  • βœ… Native editor integration
  • βœ… Syntax highlighting for configuration files
  • βœ… Snippets and auto-completion
  • βœ… Documentation navigation
  • βœ… Configuration validation

Installation:

# Install from VSCode Marketplace
# Search "Aether Vault" in extensions
# or install from local package
code --install-extension package/vscode/

🐳 Docker Package

Purpose: Containerized runtime for production Aether Vault deployment.

Key Features:

  • βœ… Lightweight runtime for vault services
  • βœ… Container orchestration and management
  • βœ… Health monitoring and logging
  • βœ… Secure vault credentials injection
  • βœ… Multi-platform container support
  • βœ… Kubernetes integration ready

Usage:

# Build and run Docker runtime
docker build -t aether-vault-runtime package/docker/
docker run -d \
  --name vault-runtime \
  -p 8080:8080 \
  -e VAULT_ENDPOINT=https://vault.example.com \
  aether-vault-runtime

πŸ“ Architecture

πŸ—οΈ Evolved Monorepo Structure

aether-vault/
β”œβ”€β”€ app/                     # Next.js 16 Frontend Application (TypeScript)
β”‚   β”œβ”€β”€ components/         # React components with shadcn/ui
β”‚   β”‚   β”œβ”€β”€ ui/            # UI component library
β”‚   β”‚   β”œβ”€β”€ login-form.tsx # Authentication forms
β”‚   β”‚   └── Sidebar.tsx    # Navigation components
β”‚   β”œβ”€β”€ context/           # React contexts
β”‚   β”‚   └── JwtAuthContext.tsx # Authentication state
β”‚   β”œβ”€β”€ login/             # Authentication pages
β”‚   β”œβ”€β”€ register/          # User registration
β”‚   β”œβ”€β”€ forgot/            # Password recovery
β”‚   β”œβ”€β”€ lib/               # Utility functions
β”‚   └── styles/            # Tailwind CSS styling
β”œβ”€β”€ server/                 # Go Backend Server
β”‚   β”œβ”€β”€ cmd/
β”‚   β”‚   └── server/
β”‚   β”‚       └── main.go    # CLI entry point
β”‚   β”œβ”€β”€ src/
β”‚   β”‚   β”œβ”€β”€ config/        # Database and server configuration
β”‚   β”‚   β”œβ”€β”€ controllers/   # HTTP request handlers (auth, users, secrets)
β”‚   β”‚   β”œβ”€β”€ middleware/    # Gin middleware (auth, validation, monitoring)
β”‚   β”‚   β”œβ”€β”€ models/        # Data models and structs
β”‚   β”‚   β”œβ”€β”€ routes/        # API route definitions
β”‚   β”‚   β”œβ”€β”€ services/      # Business logic (auth, users, secrets)
β”‚   β”‚   └── tests/         # Unit and integration tests
β”‚   β”œβ”€β”€ main.go            # Main server entry point
β”‚   β”œβ”€β”€ go.mod             # Go modules file
β”‚   └── go.sum             # Go modules checksum
β”œβ”€β”€ package/                # πŸ“¦ Package Ecosystem (NEW)
β”‚   β”œβ”€β”€ github/            # GitHub App Package
β”‚   β”‚   β”œβ”€β”€ src/          # TypeScript source
β”‚   β”‚   β”œβ”€β”€ Dockerfile    # Container config
β”‚   β”‚   └── README.md     # Package docs
β”‚   β”œβ”€β”€ golang/           # Go SDK Package
β”‚   β”‚   β”œβ”€β”€ go.mod        # Go modules
β”‚   β”‚   └── README.md     # Go package docs
β”‚   β”œβ”€β”€ node/             # Node.js SDK Package
β”‚   β”‚   β”œβ”€β”€ src/          # TypeScript source
β”‚   β”‚   β”œβ”€β”€ examples/     # Usage examples
β”‚   β”‚   └── README.md     # Node.js package docs
β”‚   β”œβ”€β”€ python/           # Python SDK Package
β”‚   β”‚   β”œβ”€β”€ src/          # Python source
β”‚   β”‚   β”œβ”€β”€ examples/     # Usage examples
β”‚   β”‚   └── README.md     # Python package docs
β”‚   β”œβ”€β”€ vscode/           # VSCode Extension Package
β”‚   β”‚   β”œβ”€β”€ src/          # Extension source
β”‚   β”‚   └── README.md     # Extension docs
β”‚   β”œβ”€β”€ docker/           # Docker Runtime Package
β”‚   β”‚   β”œβ”€β”€ Dockerfile    # Runtime container
β”‚   β”‚   └── README.md     # Runtime docs
β”‚   └── README.md         # Package ecosystem overview
β”œβ”€β”€ cli/                    # Command Line Interface (TypeScript)
β”‚   β”œβ”€β”€ src/
β”‚   β”‚   β”œβ”€β”€ commands/      # CLI commands (users, secrets, backup)
β”‚   β”‚   β”œβ”€β”€ utils/         # CLI utilities
β”‚   β”‚   └── types/         # TypeScript definitions
β”‚   └── package.json       # CLI-specific dependencies
β”œβ”€β”€ services/               # Core Vault Services (TypeScript)
β”œβ”€β”€ tools/                  # Development Utilities (TypeScript)
β”œβ”€β”€ routers/                # API Routing Services (TypeScript)
β”œβ”€β”€ prisma/                 # Database Schema & Migrations
β”‚   β”œβ”€β”€ schema.prisma      # Database schema definition
β”‚   └── config.ts          # Prisma configuration
β”œβ”€β”€ public/                 # Static Assets
β”œβ”€β”€ docs/                   # Documentation
β”œβ”€β”€ docker/                 # Docker Configuration
β”œβ”€β”€ .storybook/             # Storybook Configuration
└── electron/               # Electron App (Future)

πŸ”„ Enhanced Data Flow Architecture

β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”    β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”    β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”
β”‚   Next.js App   β”‚    β”‚   Gin API        β”‚    β”‚   PostgreSQL    β”‚
β”‚   (Frontend)    │◄──►│   (Backend)      │◄──►│   (Database)    β”‚
β”‚  Port 3000      β”‚    β”‚  Port 8080       β”‚    β”‚  Port 5432      β”‚
β”‚  TypeScript     β”‚    β”‚  Go              β”‚    β”‚                 β”‚
β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜    β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜    β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜
            β”‚                       β”‚                       β”‚
            β–Ό                       β–Ό                       β–Ό
      JWT Tokens            API Endpoints         User/Secrets Data
      React Context        Authentication         Prisma ORM
      shadcn/ui Components  Business Logic        Auto-migrations
            β”‚                       β”‚
            β–Ό                       β–Ό
     β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”    β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”
     β”‚  Package Ecosystemβ”‚   β”‚  GitHub App      β”‚
     β”‚  (Multi-Language) β”‚   β”‚  (Orchestration) β”‚
     β”‚  GitHub App       β”‚   β”‚  Secrets Detect  β”‚
     β”‚  Go SDK           β”‚   β”‚  Workflow Triggerβ”‚
     β”‚  Node.js SDK      β”‚   β”‚  Notifications   β”‚
     β”‚  Python SDK       β”‚   β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜
     β”‚  VSCode Extension β”‚
     β”‚  Docker Runtime   β”‚
     β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜

🌐 Integration Scenarios

🏒 Application Developer

// In your existing Next.js application
import { createVaultClient } from "aether-vault";

const vault = createVaultClient({
  baseURL: "/api/v1", // Next.js proxy
  auth: { type: "session" },
});

// Secure access to secrets
const dbConfig = await vault.secrets.getValue("DATABASE_URL");
const redisConfig = await vault.secrets.getValue("REDIS_URL");

// Automatic 2FA configuration
const githubTotp = await vault.totp.generate({
  name: "GitHub",
  account: "dev@company.com",
});

πŸ› οΈ System Administrator

// Centralized management via web interface
const vault = createVaultClient({
  /* admin config */
});

// Complete access audit
const auditLogs = await vault.audit.list({
  startDate: "2024-01-01",
  endDate: "2024-01-31",
});

// User management
const users = await vault.identity.list({
  roles: ["developer"],
  status: "active",
});

πŸš€ Production Deployment

# docker-compose.yml for production
version: "3.8"
services:
  vault-frontend:
    image: aether-vault/app:latest
    environment:
      - NEXT_PUBLIC_VAULT_URL=https://vault.company.com/api/v1

  vault-backend:
    image: aether-vault/server:latest
    environment:
      - DATABASE_URL=postgresql://...
      - VAULT_SECRET_KEY=${VAULT_SECRET_KEY}

  vault-github-app:
    image: aether-vault/github:latest
    environment:
      - GITHUB_APP_ID=${GITHUB_APP_ID}
      - GITHUB_PRIVATE_KEY=${GITHUB_PRIVATE_KEY}

πŸ’» Development

🎯 Enhanced Make Command Interface

The project uses a comprehensive Makefile with 60+ commands for streamlined development across Go, TypeScript, and the new package ecosystem:

# πŸš€ Quick Start & Development
make quick-start          # Install, migrate, and start dev servers
make dev                 # Start all services (frontend + backend)
make dev-frontend        # Frontend only (port 3000)
make dev-backend         # Backend only (port 8080)

# πŸ“¦ Package Development (NEW)
make dev-github          # Start GitHub App development
make build-packages      # Build all packages
make test-packages       # Test all packages
make docs-packages       # Generate package documentation

# πŸ”§ Go Backend Development
make go-server           # Start Go server directly
make go-build            # Build Go binary
make go-test             # Run Go tests
make go-mod-tidy         # Clean Go dependencies
make go-fmt              # Format Go code

# πŸ—οΈ Building & Production
make build               # Build all packages
make build-frontend       # Frontend production build
make build-packages      # Build all package ecosystem
make start               # Start production servers

# πŸ”§ Code Quality & Testing
make lint                # Lint all packages
make lint-fix            # Auto-fix linting issues
make typecheck           # TypeScript type checking
make format              # Format code with Prettier
make test                # Run all tests
make test-coverage       # Run tests with coverage

# πŸ—„οΈ Database Management
make db-generate         # Generate Prisma client
make db-migrate          # Run database migrations
make db-studio           # Open Prisma Studio
make db-seed             # Seed development data
make db-reset            # Reset database

# πŸ› οΈ CLI Tools
make cli                 # Run CLI commands
make cli-install         # Install CLI globally

# 🐳 Docker & Deployment
make docker-build        # Build Docker image
make docker-run          # Run with Docker Compose
make docker-stop         # Stop Docker services
make docker-packages     # Build all package containers

# πŸ”§ Maintenance & Utilities
make clean               # Clean build artifacts
make reset               # Reset project to clean state
make health              # Check service health
make status              # Show project status
make audit               # Security audit dependencies

πŸ“‹ Evolved Development Workflow

# New developer setup
make quick-start

# Daily development
make dev                 # Start working (Go + TypeScript)
make lint-fix            # Fix code issues
make typecheck           # Verify types
make test                # Run tests

# Package-specific development
make dev-github          # GitHub App development
cd package/github        # Work on GitHub App
cd package/golang        # Work on Go SDK
cd package/node          # Work on Node.js SDK
cd package/python        # Work on Python SDK
cd package/vscode        # Work on VSCode Extension
cd package/docker        # Work on Docker Runtime

# Go-specific development
cd server
go run main.go          # Start Go server
go test ./...           # Run Go tests
go fmt ./...            # Format Go code
go mod tidy             # Clean dependencies

# TypeScript-specific development
make dev-frontend       # Frontend only
make lint               # Check code quality
make typecheck          # Verify types

# Before committing
make format             # Format code
make lint               # Check code quality
make typecheck          # Verify types

# Database changes
make db-migrate         # Apply migrations
make db-studio          # Browse database

# Production deployment
make build              # Build everything
make docker-build       # Create Docker image
make docker-run         # Deploy

🎯 Advanced Commands

# Performance & Monitoring
make perf-build          # Build with performance analysis
make metrics             # Show project metrics
make monitor             # Start monitoring tools

# Environment Management
make env-dev             # Setup development environment
make env-prod            # Setup production environment

# Backup & Recovery
make backup              # Create project backup
make restore-backup BACKUP=filename.tar.gz

# CI/CD Helpers
make ci-install          # Install for CI environment
make ci-build            # Build for CI
make ci-test             # Test for CI

# Project Information
make tree                # Show project structure
make ports               # Show used ports
make deps                # Show dependency tree
make help                # Show all commands

πŸ“‹ Enhanced Development Guidelines

  • Make-First Workflow - Use make commands for all operations
  • Go Best Practices - Follow Go conventions for backend code
  • TypeScript Strict Mode - All frontend code must pass strict type checking
  • Package Standards - Follow package-specific guidelines and conventions
  • Hybrid Monorepo Best Practices - Use workspace-specific dependencies
  • Conventional Commits - Use standardized commit messages
  • Component Structure - Follow established patterns for React components
  • API Design - RESTful endpoints with proper HTTP methods
  • Error Handling - Comprehensive error handling and logging
  • Security First - Validate all inputs and implement proper authentication

πŸ” Authentication System

🎯 Complete Hybrid Implementation

The authentication system is fully implemented with Go backend and TypeScript frontend:

  • JWT Tokens - Secure token-based authentication with refresh mechanism
  • Login/Register Forms - Complete user authentication flow with validation
  • Auth Context - Global authentication state management in React
  • Protected Routes - Route-based authentication guards
  • Go API Endpoints - Complete authentication API with Gin framework
  • Password Security - bcrypt hashing for secure password storage
  • Session Management - LocalStorage-based session persistence

πŸ”„ Hybrid Authentication Flow

// Go Backend Registration Process
1. User submits registration β†’ API validation
2. Password hashing with bcrypt β†’ Database storage
3. JWT tokens generated β†’ Client receives tokens
4. Auth context updates β†’ User logged in

// Go Backend Login Process
1. User submits credentials β†’ API validation
2. Password verification β†’ JWT token generation
3. Tokens stored β†’ Auth context updated
4. Redirect to dashboard β†’ Protected route access

// Token Refresh
1. Background token refresh β†’ Automatic renewal
2. Invalid tokens β†’ Redirect to login
3. Session expiration β†’ Clean logout

πŸ—ΊοΈ Development Roadmap

🎯 Phase 1: Foundation (βœ… Complete - Q1 2025)

  • βœ… Hybrid Monorepo Setup - Go backend + TypeScript frontend workspaces
  • βœ… Authentication System - Complete JWT implementation with forms
  • βœ… Frontend Framework - Next.js 16 + React 19.2.1 + shadcn/ui
  • βœ… Go Backend API - Gin with authentication endpoints
  • βœ… Database Layer - Prisma with PostgreSQL and user models
  • βœ… CLI Tools - Complete command-line interface
  • βœ… Development Environment - TypeScript strict mode, Go modules, hot reload

πŸš€ Phase 2: Ecosystem Evolution (βœ… Complete - Q1 2025)

  • βœ… Package Ecosystem Creation - GitHub App, Go SDK, Node.js SDK, Python SDK, VSCode, Docker
  • βœ… GitHub Marketplace Integration - Verified GitHub App with secrets orchestration
  • βœ… Multi-Language SDKs - Native Go, TypeScript, and Python SDKs
  • βœ… Enhanced Documentation - Package-specific docs and architecture guides
  • βœ… Docker Deployment - Production-ready containers for all packages
  • βœ… Security Implementation - Rate limiting, validation, security headers

βš™οΈ Phase 3: Core Features (πŸ”„ In Progress - Q2 2025)

  • πŸ”„ TOTP Dashboard - Complete CRUD interface for TOTP administration
  • πŸ”„ Role-Based Access Control - Granular permissions and role management
  • πŸ”„ Security Enhancements - Rate limiting, validation, CORS
  • πŸ“‹ API Documentation - Comprehensive API docs
  • πŸ“‹ Testing Suite - Unit and integration tests
  • πŸ“‹ Performance Optimization - Caching and optimization

🌟 Phase 4: Advanced Security (Q3 2025)

  • πŸ“‹ Secrets Rotation - Automatic secrets rotation with policies
  • πŸ“‹ Advanced Encryption - HSM integration, enhanced encryption
  • πŸ“‹ Audit & Compliance - Advanced audit trail and compliance reporting
  • πŸ“‹ Web Administration Dashboard - Complete server management interface
  • πŸ“‹ Zero Trust Architecture - Enhanced security model

🎯 Phase 5: Enterprise Features (Q4 2025)

  • πŸ“‹ Enterprise SSO - SAML, OIDC, LDAP integration
  • πŸ“‹ Multi-Region Support - Geographic distribution support
  • πŸ“‹ Advanced Analytics - Usage patterns and insights
  • πŸ“‹ Mobile Applications - React Native companion apps
  • πŸ“‹ High Availability - Clustering and failover

🀝 Contributing

We're looking for contributors to help build this comprehensive evolved secrets management platform! Whether you're experienced with Go, TypeScript, GitHub Apps, security, web development, or package development, there's a place for you.

🎯 How to Get Started

  1. Fork the repository and create a feature branch
  2. Check the issues for tasks that need help
  3. Join discussions about architecture and features
  4. Start small - Documentation, tests, or minor features
  5. Follow our code standards and commit guidelines

πŸ—οΈ Areas Needing Help

  • Go Backend Development - API endpoints, business logic, security, secrets management
  • TypeScript Frontend Development - React components, UI/UX design, dashboard
  • Package Development - GitHub App enhancements, Go SDK features, Node.js SDK improvements, Python SDK, VSCode extension
  • Database Design - Schema development, migrations, optimization
  • Security Specialists - Authentication, encryption, secrets rotation
  • DevOps Engineers - Docker, deployment, CI/CD for hybrid stack
  • GitHub App Experts - Webhook handling, Marketplace integration
  • CLI Development - Command-line tools and utilities
  • Documentation - API docs, user guides, tutorials, package docs

πŸ“ Evolved Contribution Process

  1. Choose an area - Core server, frontend, or specific package
  2. Read package-specific docs - Understand package conventions
  3. Create a branch with a descriptive name
  4. Implement your changes following our evolved guidelines
  5. Test thoroughly in all relevant environments
  6. Submit a pull request with clear description and testing
  7. Address feedback from maintainers and community

πŸ“‹ Development Guidelines

  • Make-First Workflow - Use make commands for all operations
  • Go Best Practices - Follow Go conventions for backend code
  • TypeScript Strict Mode - All frontend code must pass strict type checking
  • Package Standards - Follow package-specific guidelines and conventions
  • Hybrid Monorepo Best Practices - Use workspace-specific dependencies
  • Conventional Commits - Use standardized commit messages
  • Component Structure - Follow established patterns for React components
  • API Design - RESTful endpoints with proper HTTP methods
  • Error Handling - Comprehensive error handling and logging
  • Security First - Validate all inputs and implement proper authentication
  • Performance - Optimization of queries, intelligent caching
  • Accessibility - WCAG 2.1 AA compliance minimum

πŸ“Š Project Status

Component Status Technology Evolution Notes
Hybrid Architecture βœ… Working Go + TypeScript Enhanced Monorepo with package ecosystem
Authentication System βœ… Working JWT (Go/TS) Complete Full implementation with forms
Go Backend API βœ… Working Gin + Prisma Enhanced High-performance with PostgreSQL
Frontend Framework βœ… Working Next.js 16 + React 19.2.1 Enhanced shadcn/ui + Tailwind CSS v4
Package Ecosystem βœ… Working Multi-Language NEW GitHub App + Go SDK + Node.js SDK + Python SDK + VSCode + Docker
GitHub App βœ… Working TypeScript + Fastify NEW Verified Marketplace app
Go SDK βœ… Working Native Go NEW High-performance client library
Node.js SDK βœ… Working TypeScript NEW Universal client with examples
Python SDK βœ… Working Python NEW Native Python client
VSCode Extension βœ… Working TypeScript NEW Integrated development support
Docker Runtime βœ… Working Go + Docker NEW Containerized deployment
UI Component Library βœ… Working shadcn/ui + Tailwind CSS Enhanced Complete component set
Database Layer βœ… Working Prisma + PostgreSQL Enhanced Auto-migrations + user models
CLI Tools βœ… Working TypeScript Enhanced Complete command-line interface
Docker Deployment βœ… Working Multi-Stage NEW All packages containerized
TOTP Management πŸ”„ In Progress Go/TS Enhanced Dashboard interface
Role-Based Access πŸ“‹ Planned Go/TS Planned Granular permissions system
Secrets Rotation πŸ“‹ Planned Go/TS Planned Automatic rotation policies
Advanced Security πŸ“‹ Planned Go/TS Planned HSM integration
Testing Suite πŸ“‹ Planned Go/TS Planned Unit and integration tests
Documentation βœ… Working Go/TS Enhanced Package-specific docs

πŸ“ž Support & Community

πŸ’¬ Get Help

πŸ› Reporting Issues

When reporting bugs, please include:

  • Clear description of the problem
  • Steps to reproduce
  • Environment information (Go version, Node.js version, OS, etc.)
  • Error logs or screenshots
  • Expected vs actual behavior
  • Package-specific information (if applicable)

🌟 Community


πŸ† Sponsors & Partners

Development led by Sky Genesis Enterprise

We're looking for sponsors and partners to help accelerate development of this open-source evolved secrets management platform.

🀝 Become a Sponsor


πŸ“„ License

This project is licensed under the MIT License - see the LICENSE file for details.

MIT License

Copyright (c) 2025 Sky Genesis Enterprise

Permission is hereby granted, free of charge, to any person obtaining a copy
of this software and associated documentation files (the "Software"), to deal
in the Software without restriction, including without limitation the rights
to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
copies of the Software, and to permit persons to whom the Software is
furnished to do so, subject to the following conditions:

The above copyright notice and this permission notice shall be included in all
copies or substantial portions of the Software.

πŸ™ Acknowledgments

  • Sky Genesis Enterprise - Project leadership and evolution
  • Go Community - High-performance programming language and ecosystem
  • Gin Framework - Lightweight HTTP web framework
  • Prisma Team - Modern Go database library
  • Next.js Team - Excellent React framework
  • React Team - Modern UI library
  • shadcn/ui - Beautiful component library
  • GitHub - Marketplace platform and integration tools
  • Fastify Team - High-performance Node.js framework
  • pnpm - Fast, disk space efficient package manager
  • Make - Universal build automation and command interface
  • Docker Team - Container platform and tools
  • Open Source Community - Tools, libraries, and inspiration

πŸš€ Join Us in Building the Evolved Future of Secrets Management!

⭐ Star This Repo β€’ πŸ› Report Issues β€’ πŸ’‘ Start a Discussion


πŸ”§ Rapid Evolution - Complete Package Ecosystem with GitHub Marketplace Integration!

Made with ❀️ by the Sky Genesis Enterprise team

Building an evolved secrets management platform with complete authentication, package ecosystem, and GitHub integration

About

An open-source secrets and TOTP vault designed as a security control plane for developers.

Topics

Resources

License

Code of conduct

Contributing

Security policy

Stars

Watchers

Forks

Sponsor this project

Packages

 
 
 

Contributors 2

  •  
  •