Files
coder/docs/reference/cli/secret_create.md
T
Zach 85984ff142 feat: add enable/disable support for user secrets (#27537)
Users can now disable a secret to stop it from being injected into
workspaces without deleting it, and re-enable it later. Disabled secrets
stay visible and editable everywhere they already appear.

An enabled secret must have at least one injection target; a secret with
no target can be stored only while disabled. Existing target-less secrets
are migrated to disabled to preserve current behavior.

Support spans the REST API, SDK, CLI, dashboard, and audit log.
2026-07-28 09:58:33 -06:00

1.2 KiB
Generated

secret create

Create a secret

Usage

coder secret create [flags] <name>

Description

Provide the secret value with --value or non-interactive stdin (pipe or redirect).

Options

--value

Type string

Set the secret value. For security reasons, prefer non-interactive stdin (pipe or redirect).

--description

Type string

Set the secret description.

--env

Type string

Name of the workspace environment variable that this secret will set.

--file

Type string

Workspace file path where this secret will be written. Must start with ~/ or /.

--enabled

Type bool
Default true

Whether the secret is injected into workspaces. An enabled secret must set --env or --file; pass --enabled=false to store a secret without injecting it.