dify secret integrated with 3rd part provider #22226

Open
opened 2026-02-21 20:16:14 -05:00 by yindo · 0 comments
Owner

Originally created by @matteo-rama on GitHub (Feb 14, 2026).

Self Checks

  • I have read the Contributing Guide and Language Policy.
  • I have searched for existing issues search for existing issues, including closed ones.
  • I confirm that I am using English to submit this report, otherwise it will be closed.
  • Please do not modify this template :) and fill in all the required fields.

1. Is this request related to a challenge you're experiencing? Tell me about your story.

i was using n8n before trying dify and i really miss a feature.
in n8n it was possible to integrate AWS Secrets Manager, Azure Key Vault, HashiCorp Vault (and other, now i only try azure and hashicorp to be honest) and fetch a set of keys from the vault.
keys are then considered as 'secret' and in workflow in n8n can be used like any other secret.

What's the differente between storing them into dify secret? Well management is much more simple as you have only one source of truth, if db password rotate or apikey for http call rotate, you don't have to do anything basically, as rotation happen on vault (so yes, vault should also refresh values every now and then or use the api that automatically get the secret when change, but to be honest i don't know how they work internally)

2. Additional context or comments

No response

3. Can you help us with this feature?

  • I am interested in contributing to this feature.
Originally created by @matteo-rama on GitHub (Feb 14, 2026). ### Self Checks - [x] I have read the [Contributing Guide](https://github.com/langgenius/dify/blob/main/CONTRIBUTING.md) and [Language Policy](https://github.com/langgenius/dify/issues/1542). - [x] I have searched for existing issues [search for existing issues](https://github.com/langgenius/dify/issues), including closed ones. - [x] I confirm that I am using English to submit this report, otherwise it will be closed. - [x] Please do not modify this template :) and fill in all the required fields. ### 1. Is this request related to a challenge you're experiencing? Tell me about your story. i was using n8n before trying dify and i really miss a feature. in n8n it was possible to integrate AWS Secrets Manager, Azure Key Vault, HashiCorp Vault (and other, now i only try azure and hashicorp to be honest) and fetch a set of keys from the vault. keys are then considered as 'secret' and in workflow in n8n can be used like any other secret. What's the differente between storing them into dify secret? Well management is much more simple as you have only one source of truth, if db password rotate or apikey for http call rotate, you don't have to do anything basically, as rotation happen on vault (so yes, vault should also refresh values every now and then or use the api that automatically get the secret when change, but to be honest i don't know how they work internally) ### 2. Additional context or comments _No response_ ### 3. Can you help us with this feature? - [ ] I am interested in contributing to this feature.
yindo added the 💪 enhancement label 2026-02-21 20:16:14 -05:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: langgenius/dify#22226