LATCH / DOCUMENTATION
Your project’s keys.
Your call.
Keep secrets in a local vault. When your coding agent needs access, review the command in a small desktop popup and approve one launch.
latch run --project ./my-app --env development --secret API_KEY --agent codex -- node server.mjsSet up your vault ↗
Install Latch, choose a passphrase, and register a project.
Request access ↗
Use the same CLI from Codex, Claude Code, or another agent.
Understand the limits ↗
What approval protects, and what a child process can still do.
Early development · Linux with GNOME Keyring · Use generated test credentials