Secret plaintext is write-only.Crank encrypts secret values with the workspace master key. After create or rotate, the API returns only metadata, so this page focuses on lifecycle and usage references.
Workspace secrets
Name
Kind
Version
Last used
Used by
Status
Create secret
Use a stable operator-facing label. Plaintext values are never returned after storage.
Useful for generic secret payloads. The value must be valid JSON.
Creation stores encrypted plaintext and returns metadata only.