# Infisical vs OpenBao

**Leader by Vioscale score:** Infisical

| Attribute | Infisical | OpenBao |
|---|---|---|
| **Vioscale score** | 63.8 (73% (medium)) | 56.9 (41% (low)) |
| activity.commits_last_30d | 100 | 100 |
| adoption.dependent_repos | 0 | 0 |
| adoption.github_stars | 28,974 | 7,176 |
| deployment.options | `{"cloud":true,"on_prem":true,"self_hosted":true}` | `{"on_prem":true,"self_hosted":true}` |
| description.long | A secrets management solution that provides a single, encrypted repository for storing and controlling access to application credentials, certificates, and privileged access. It enables teams to automatically sync, rotate, and audit secrets across cloud, on-premises, and AI infrastructure while enforcing fine-grained access controls and approval workflows. | A centralized system for storing and managing sensitive data like API keys and database credentials, with automatic credential generation for external systems, automatic expiration after a set lease period, and identity-based access controls. |
| features.capabilities | `{"hosting":"both","tool_type":"store","audit_logging":true,"dynamic_secrets":true,"secret_rotation":true,"open_source_core":true,"kubernetes_native":true,"fine_grained_policy":true}` | `{"hosting":"both","tool_type":"store","cncf_project":"none","audit_logging":true,"dynamic_secrets":true,"secret_rotation":true,"open_source_core":true,"kubernetes_native":true,"fine_grained_policy":true,"encryption_as_a_service":true}` |
| integrations.count | 6 | 7 |
| integrations.list | `[{"name":"Checkly"},{"name":"Vercel"},{"name":"AWS"},{"name":"GitHub"},{"name":"Datadog"},{"name":"Anthropic"}]` | `[{"name":"Kubernetes"},{"name":"PostgreSQL"},{"name":"AWS"},{"name":"S3"},{"name":"Flux"},{"name":"SOPS"},{"name":"Cosign"}]` |
| language.primary | TypeScript | Go |
| license.spdx | - | MPL-2.0 |
| market.availability | `{"primaryMarkets":["US"],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` | - |
| platform.support | `{"cli":true,"web":true}` | `{"cli":true,"linux":true,"windows":true}` |
| pricing | `{"type":"subscription","plans":[{"free":true,"name":"Free","summary":"$0 forever","features":["5 identities","Unlimited projects","100+ integrations","Agent Proxy","Secret Sharing","Secret References and Imports","Secret Overrides","2FA","10 secret syncs","Secret folders","Webhooks"],"components":[{"kind":"fixed","amount":0,"period":"month","currency":"USD"}],"description":"For individuals and personal projects","contactSales":false,"includedLimits":{"projects":"unlimited","identities":"5","environments":"3 per project","integrations":"100+"}},{"free":false,"name":"Pro","summary":"$20/identity/month billed annually (13% savings vs monthly)","features":["Unlimited identities","Unlimited projects","Access Controls","Secret Rotation","SAML SSO","30-day Audit log retention","Secret Versioning","Point-in-time Recovery","25 secret syncs","3 honey tokens","Webhooks","Custom environments","Insights dashboard"],"commitment":"annual","components":[{"kind":"per_unit","unit":"identity","amount":20,"period":"month","currency":"USD"}],"description":"For growing teams looking to boost their security","contactSales":false,"includedLimits":{"identities":"unlimited","environments":"6 per project","honey_tokens":"3","secret_syncs":"25"}},{"free":false,"name":"Advanced","summary":"$40/identity/month billed annually (13% savings vs monthly)","features":["Everything in Pro","Dynamic Secrets","Honey Tokens","SOC 2 Type II","Higher Rate Limits","Custom Roles","SSO & MFA enforcement","90-day Audit log retention","50 secret syncs","10 honey tokens","Gateways","Insights dashboard"],"commitment":"annual","components":[{"kind":"per_unit","unit":"identity","amount":40,"period":"month","currency":"USD"}],"description":"For scaling teams with complex security needs","contactSales":false,"includedLimits":{"identities":"unlimited","environments":"12 per project","honey_tokens":"10","secret_syncs":"50"}},{"free":false,"name":"Enterprise","summary":"Custom pricing","features":["Everything in Advanced","Approval Workflows & Access Requests","LDAP","SCIM","Custom Audit log retention and rate limits","User Groups","99.99% SLA","KMIP","External KMS & HSM Support","Audit Log Streaming (SIEM)","Sub-organizations","Self-hosting or Dedicated Infrastructure"],"commitment":"annual","description":"For large organizations that need SCIM, custom SLAs, and dedicated support","contactSales":true,"includedLimits":{"identities":"unlimited","environments":"unlimited","honey_tokens":"unlimited","secret_syncs":"unlimited","audit_log_retention":"custom"}}],"summary":"From $20/identity/month (annual billing). Free tier available. All paid plans include free trial, no credit card required.","currency":"USD","freeTier":true,"sourceUrl":"https://infisical.com/","retrievedAt":"2026-08-05T13:25:06.726Z","startingPrice":{"amount":20,"period":"month","currency":"USD"},"billingPeriods":["month","year"]}` | `{"type":"open_source","freeTier":true,"sourceUrl":"https://openbao.org/","retrievedAt":"2026-08-05T13:26:33.292Z"}` |
| pricing.free_tier | yes | yes |
| pricing.model | commercial | open_source |
| pricing.price_level | free | free |
| pricing.transparent | no | yes |
| release.cadence_days | 1 | 26 |
| release.history | `[{"url":"https://github.com/Infisical/infisical/releases/tag/v0.163.0","date":"2026-08-26T14:07:43Z","type":"stable","version":"v0.163.0"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.24","date":"2026-08-21T19:58:22Z","type":"stable","version":"v0.162.24"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.23","date":"2026-08-21T17:36:59Z","type":"stable","version":"v0.162.23"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.22","date":"2026-08-20T22:43:48Z","type":"stable","version":"v0.162.22"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.21","date":"2026-08-18T12:31:31Z","type":"stable","version":"v0.162.21"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.20","date":"2026-08-17T19:16:39Z","type":"stable","version":"v0.162.20"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.19","date":"2026-08-10T23:18:12Z","type":"stable","version":"v0.162.19"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.18","date":"2026-08-07T18:43:05Z","type":"stable","version":"v0.162.18"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.17","date":"2026-08-07T10:33:40Z","type":"stable","version":"v0.162.17"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.16","date":"2026-08-04T17:48:35Z","type":"stable","version":"v0.162.16"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.15","date":"2026-07-29T21:11:41Z","type":"stable","version":"v0.162.15"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.14","date":"2026-07-27T22:56:37Z","type":"stable","version":"v0.162.14"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.13","date":"2026-07-24T01:16:21Z","type":"stable","version":"v0.162.13"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.12","date":"2026-07-23T02:01:55Z","type":"stable","version":"v0.162.12"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.11","date":"2026-07-21T22:20:09Z","type":"stable","version":"v0.162.11"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.10","date":"2026-07-20T13:15:30Z","type":"stable","version":"v0.162.10"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.9","date":"2026-07-17T23:59:31Z","type":"stable","version":"v0.162.9"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.8","date":"2026-07-17T23:02:36Z","type":"stable","version":"v0.162.8"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.7","date":"2026-07-15T19:38:12Z","type":"stable","version":"v0.162.7"},{"url":"https://github.com/Infisical/infisical/releases/tag/v0.162.6","date":"2026-07-14T01:00:21Z","type":"stable","version":"v0.162.6"}]` | `[{"url":"https://github.com/openbao/openbao/releases/tag/v2.6.2","date":"2026-08-18T16:21:00Z","type":"stable","version":"v2.6.2"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.6.1","date":"2026-07-22T14:37:36Z","type":"stable","version":"v2.6.1"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.6.0","date":"2026-07-14T17:06:32Z","type":"stable","version":"v2.6.0"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.6.0-beta20260622","date":"2026-06-22T19:58:29Z","type":"prerelease","version":"v2.6.0-beta20260622"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.5.5","date":"2026-06-17T11:27:10Z","type":"stable","version":"v2.5.5"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.5.4","date":"2026-05-20T16:15:07Z","type":"stable","version":"v2.5.4"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.5.3","date":"2026-04-20T19:35:06Z","type":"stable","version":"v2.5.3"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.5.2","date":"2026-03-25T16:23:32Z","type":"stable","version":"v2.5.2"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.5.1","date":"2026-02-23T17:34:23Z","type":"stable","version":"v2.5.1"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.5.0","date":"2026-02-04T16:26:04Z","type":"stable","version":"v2.5.0"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.5.0-beta20251125","date":"2025-11-25T19:36:21Z","type":"prerelease","version":"v2.5.0-beta20251125"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.4.4","date":"2025-11-24T20:01:19Z","type":"stable","version":"v2.4.4"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.4.3","date":"2025-10-22T20:27:25Z","type":"stable","version":"v2.4.3"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.4.1","date":"2025-09-11T20:32:45Z","type":"stable","version":"v2.4.1"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.4.0","date":"2025-08-28T20:39:37Z","type":"stable","version":"v2.4.0"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.3.2","date":"2025-08-08T04:11:06Z","type":"stable","version":"v2.3.2"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.3.1","date":"2025-06-25T19:26:24Z","type":"stable","version":"v2.3.1"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.2.2","date":"2025-05-29T19:43:18Z","type":"stable","version":"v2.2.2"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.3.0-beta20250528","date":"2025-05-28T21:56:16Z","type":"prerelease","version":"v2.3.0-beta20250528"},{"url":"https://github.com/openbao/openbao/releases/tag/v2.2.1","date":"2025-04-22T20:39:12Z","type":"stable","version":"v2.2.1"}]` |
| reliability.sla_pct | 99.99 | - |
| reliability.status_page | yes | yes |
| security.disclosure_policy | yes | - |
| security.gdpr | yes | - |
| security.hipaa | yes | - |
| security.scorecard | - | 8.5 |
| security.soc2 | yes | - |
| security.vulnerabilities | `{"count":0,"source":"https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=go&package_name=github.com%2FInfisical%2Finfisical%2Fk8-operator&per_page=100","last_12m":0,"max_severity":null}` | `{"count":0,"source":"https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=go&package_name=github.com%2Fopenbao%2Fopenbao%2Ftools&per_page=100","last_12m":0,"max_severity":null}` |

## Capabilities (Secrets Management Tools)

| Capability | Infisical | OpenBao |
|---|:--:|:--:|
| **Core** |  |  |
| Tool type | Secret store / engine | Secret store / engine |
| Dynamic (short-lived) secrets | ✓ | ✓ |
| **Deployment** |  |  |
| Hosting | Cloud + self-hosted | Cloud + self-hosted |
| **Lifecycle** |  |  |
| Automatic secret rotation | ✓ | ✓ |
| **Crypto** |  |  |
| Encryption as a service (transit) | - | ✓ |
| **Compliance** |  |  |
| FIPS 140-2/3 validated crypto | - | - |
| HSM support | - | - |
| **Access** |  |  |
| Fine-grained / identity-based policy | ✓ | ✓ |
| **Governance** |  |  |
| Audit logging | ✓ | ✓ |
| **Integration** |  |  |
| Kubernetes native (CRD / CSI / K8s auth) | ✓ | ✓ |
| **Scope** |  |  |
| PKI / certificate authority | - | - |
| **Licensing** |  |  |
| Open-source core | ✓ | ✓ |
| **Ecosystem** |  |  |
| CNCF maturity | - | None |

*Source: Vioscale. Generated 2026-09-01T17:18:23.742Z. "-" = undocumented, not absent.*
