{"_id":"@automic-vault/varlock-plugin","name":"@automic-vault/varlock-plugin","dist-tags":{"latest":"0.1.0"},"versions":{"0.1.0":{"name":"@automic-vault/varlock-plugin","version":"0.1.0","description":"Varlock resolver for Automic Vault","type":"commonjs","exports":{"./plugin":"./plugin.cjs"},"scripts":{"test":"node test/run.mjs"},"engines":{"node":">=22.3.0"},"peerDependencies":{"varlock":">=1.16.1 <2"},"devDependencies":{"varlock":"1.16.1"},"publishConfig":{"access":"public"},"repository":{"type":"git","url":"git+https://github.com/automic-vault/varlock-plugin.git"},"keywords":["automic-vault","secrets","varlock","varlock-plugin"],"license":"MIT","gitHead":"292dadd1e1eb8cd68e131121927f1e5a5d55bd33","_id":"@automic-vault/varlock-plugin@0.1.0","bugs":{"url":"https://github.com/automic-vault/varlock-plugin/issues"},"homepage":"https://github.com/automic-vault/varlock-plugin#readme","_nodeVersion":"26.7.0","_npmVersion":"11.19.0","dist":{"integrity":"sha512-LQkhY6J6DriMYEsWPrVhVLG9QVhP9Kx+aLSGWKfrzmS7vSWkVrKdftHPkTfk7ctxc3gUmKvOJGGdraev+EmqmA==","shasum":"b01396f658738da967477d45779503a5b8081339","tarball":"https://registry.npmjs.org/@automic-vault/varlock-plugin/-/varlock-plugin-0.1.0.tgz","fileCount":4,"unpackedSize":8152,"signatures":[{"keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U","sig":"MEUCIBDUAQPzsT+e9JXgPnX5AzkQpaTnTqJQgYO6oFt97JWXAiEAk21hiTt6fMZ4c5wQV7kPAyJ6eJm/YzCC/goiMCi82Vg="}]},"_npmUser":{"name":"mxhwll","email":"mxcl@me.com"},"directories":{},"maintainers":[{"name":"mxhwll","email":"mxcl@me.com"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages-npm-production","tmp":"tmp/varlock-plugin_0.1.0_1786986555510_0.16608510272426957"},"_hasShrinkwrap":false}},"time":{"created":"2026-08-17T17:09:15.312Z","0.1.0":"2026-08-17T17:09:15.656Z","modified":"2026-08-17T17:09:15.902Z"},"maintainers":[{"name":"mxhwll","email":"mxcl@me.com"}],"description":"Varlock resolver for Automic Vault","homepage":"https://github.com/automic-vault/varlock-plugin#readme","keywords":["automic-vault","secrets","varlock","varlock-plugin"],"repository":{"type":"git","url":"git+https://github.com/automic-vault/varlock-plugin.git"},"bugs":{"url":"https://github.com/automic-vault/varlock-plugin/issues"},"license":"MIT","readme":"# Automic Vault for Varlock\n\nUse Automic Vault Secrets from a [Varlock](https://varlock.dev) schema without\ninvoking the `av` CLI at runtime.\n\n> [!IMPORTANT]\n> Requires Automic Vault 3.9.0 or newer. Varlock requests require Approval on\n> every run; Automic Authorization and Blessings are not supported yet.\n\n## Install\n\nInstall Automic Vault in `/Applications`, then add Varlock and the plugin:\n\n```sh\n$ npm install --save-dev varlock @automic-vault/varlock-plugin\n$ av save API_TOKEN\n# Store the Secret Value in Automic Vault\n```\n\n## Use\n\nAdd `.env.schema`:\n\n```dotenv\n# @plugin(@automic-vault/varlock-plugin)\n# @disableProcessEnvInjection\n# ---\n# @sensitive @required\nAPI_TOKEN=av()\n```\n\nLoad Varlock, then read Secrets through `ENV` rather than `process.env`:\n\n```js\nimport 'varlock/auto-load';\nimport { ENV } from 'varlock/env';\n\nconst response = await fetch('https://api.example.com/me', {\n  headers: { Authorization: `Bearer ${ENV.API_TOKEN}` },\n});\n```\n\nThe resolver infers the Secret Name from the item name. Pass an explicit name\nwhen they differ: `API_TOKEN=av(ACTUAL_SECRET_NAME)`. Secret Names\nmust be static so the Approval can show the complete set before any Secret\nValue is released. `@disableProcessEnvInjection` is mandatory.\n\nThe plugin verifies XPC protocol compatibility with the signed bridge inside\n`Automic Vault.app`. One Approval covers the complete active Secret set for the\nVarlock run. After Approval, the Node application controls those Secret Values\nin its memory, helpers, child processes, and output.\n\n## Publishing\n\nCI tests every push and pull request. Publishing a GitHub release whose tag\nmatches `v<package.json version>` publishes the package through npm trusted\npublishing; no long-lived npm token is used. Configure npm's trusted publisher\nfor `automic-vault/varlock-plugin` and `.github/workflows/publish.yml` before the\nfirst release.\n","readmeFilename":"README.md","_rev":"1-7e171a118eab9d4a5f18148113d0c3b3"}