secretive
« Back to VersTracker
Description:
Store SSH keys in the Secure Enclave
Type: Cask  |  Latest Version: 1.0.3@0  |  Tracked Since: Dec 28, 2025
Links: Homepage  |  formulae.brew.sh
Category: Security
Tags: ssh security macos encryption developer-tools authentication
Install: brew install --cask secretive
About:
Secretive is a macOS application that leverages the Secure Enclave to store SSH keys, eliminating the need for unencrypted private keys on disk. It provides a native agent that handles authentication requests, ensuring that private keys are never exposed to the filesystem or other processes. This significantly enhances security for developers accessing remote servers and services.
Key Features:
  • Hardware-backed key storage using Apple's Secure Enclave
  • Native macOS agent for seamless SSH authentication
  • No unencrypted keys stored on disk
  • Touch ID / Face ID authentication for key access
Use Cases:
  • Securing SSH keys for software developers on macOS
  • Multi-factor authentication for server access without hardware tokens
  • Protecting sensitive credentials on laptops
Alternatives:
  • YubiKey – Hardware security key that works across platforms, whereas Secretive is macOS-specific and uses built-in hardware
  • ssh-agent with encrypted keys – Traditional approach that requires passphrase entry; Secretive provides hardware-backed security without passphrase management
Version History
Detected Version Rev Change Commit
Sep 18, 2025 8:50pm 1.0.3 0 VERSION_BUMP b84a03cb
Sep 17, 2025 7:41am 3.0.2 0 VERSION_BUMP bad2e415
Sep 15, 2025 2:01pm 3.0.0 0 VERSION_BUMP 0a09e713
Sep 15, 2025 2:00pm 1.0.3 0 VERSION_BUMP f4841ba5