NoxKey

API keys & secrets for agents

Only for Mac

Free

Mac

Hand AI the kingdom. Keep the keys. API keys stay in the macOS Keychain — AI agents ask through MCP and get env vars. No .env, no copy-paste, no secrets in chat. Hand AI the kingdom. Keep the keys. Your API keys stay in the macOS Keychain. AI agents ask for them through MCP and get the values loaded as environment variables — no copy-paste, no .env files, no secrets in the conversation window. — BUILT FOR AI AGENTS FIRST — NoxKey ships with a Model Context Protocol server. Claude Code, Cursor, Codex, Windsurf — any MCP-aware agent — can request a secret and get it, without the raw value ever touching its chat context. The value lands in your shell as an environment variable; the agent only sees the variable name. — TOUCH ID PROTECTED — Protected reads use macOS system authentication. Strict secrets require fresh approval, while optional short sessions can reuse a recent unlock. Values stay in the macOS Keychain, and the clipboard clears automatically. — ZERO OUTBOUND CONNECTIONS — NoxKey is sandboxed without network access. macOS blocks outbound traffic at the kernel level. No telemetry, no analytics, no cloud sync. Your secrets never leave your Mac. — MCP SERVER BUILT IN — • Focused tools: discover, load, save, scan, and native import review • Single-use encrypted handoff files — values never enter conversation history • Works with Claude Code, Cursor, Codex, Windsurf, and any MCP client — QUICK ACCESS — A global hotkey opens a command-palette panel. Type a few letters, Touch ID unlocks, value is copied. Clipboard clears automatically. — ORGANIZED BY PROJECT — Secrets live under org/project paths like noboxdev/gitpulse/DATABASE_URL. Fast to browse, impossible to confuse staging with production. — CREDENTIAL TYPES & EXPIRY TRACKING — API keys, passwords, tokens, SSH keys, recovery codes. Mark expiry dates and get reminded before things rotate out from under you. — REPLACES .ENV FILES — Stop checking .env.example into git. Stop pasting tokens into PRs. Stop worrying about which dotfile leaked your Stripe key. Move every credential to NoxKey and reference it by name. PERFECT FOR: • Developers using AI coding agents (Claude Code, Cursor, Codex, Windsurf) • Engineers managing API keys, tokens, database credentials • Anyone tired of heavyweight secret managers • Teams who want zero-trust local credential storage REQUIRES: • macOS 14 (Sonoma) or later • Touch ID recommended; macOS system-authentication fallback is supported

  • This app hasn’t received enough ratings or reviews to display an overview.

A cleaner vault and more reliable browser shortcuts. • The vault now uses one streamlined row for Recent, Secrets, Logins, Recovery and SSH Keys. • Organization and project filters now live together in the main header for faster navigation. • Git signing identities now appear with SSH keys and can be edited, organized and scoped to an organization and project. • Quick Password always copies a password, even when a website cannot be filled automatically. • Blank organization, project and environment choices now resolve consistently to useful General or Any environment catch-alls. • Removed unfinished Passkey and Secure Note categories so the vault only shows supported credential types.

The developer, Jasper Middendorp, indicated that the app’s privacy practices may include handling of data as described below. For more information, see the developer’s privacy policy .

  • Data Not Collected

    The developer does not collect any data from this app.

    Privacy practices may vary, for example, based on the features you use or your age. Learn More

    The developer has not yet indicated which accessibility features this app supports. Learn More

    Seller
    • Jasper Middendorp
    Size
    • 5.3 MB
    Category
    • Developer Tools
    Compatibility
    Requires macOS 14.0 or later.
    • Mac
      Requires macOS 14.0 or later.
    Languages
    • English
    Age Rating
    4+
    Copyright
    • © 2026 No-Box-Dev