/node-credstash

Module for reading credstash secrets

Primary LanguageJavaScript

node-credstash

Circle CI

Node.js module for reading credstash secrets without needing snakes

const Credstash = require('../index.js');

var credstash = new Credstash();
return credstash.get('secret', (e, secret) => {
  console.log('do not share the secret', secret);
});

Installation

Ensure you have AWS credentials configured. The credentials should be set up as a secret reader

$ npm install credstash

What is credstash?

Credstash is a little utility for managing credentials in the cloud

Who this module for?

This module is for environments where you are using credstash to store secrets, and you want to read secrets within node without installing python. The module could be used within your node module to retrieve, for instance, database connection credentials from credstash.

Retrieving the last N versions of a secret

Credstash support versioning of secrets which allows to easily rotate secrets.

By default node-credstash will return the latest (most recent version of a secret). You can also retrieve the latest N versions of a secret as follows:

const Credstash = require('../index.js');

var credstash = new Credstash();
return credstash.get('secret', {limit: 3}, (e, secrets) => {
  console.log('this is the last version', secrets[0]);
  console.log('this is the second-last', secrets[1]);
  console.log('this is the third-last', secrets[2]);
});