A path-based secret store, encrypted with your KMS keys. Store passwords, API keys, certificates, and configuration secrets with versioning, IAM, and optional IP and time-based access policies.
Thalassa Secrets Manager lets teams store sensitive data in a hierarchical path structure — without managing your own vault infrastructure. Every secret is encrypted with a KMS key you choose at creation, versioned automatically, and protected by IAM plus optional access policies.
Organisations across the cloud-native industry rely on Thalassa Cloud for sovereign infrastructure — and are among the first to adopt Secrets Manager in Early Access.

A leader in cloud-native solutions, ContainerInfra builds scalable Kubernetes infrastructure on Thalassa Cloud. Path-based secrets and KMS integration fit how they automate deployments for customers across Europe.
"Thalassa Cloud's focus on sovereignty, sustainability, and innovation aligns with our purpose-driven mission to build a more responsible digital and environmental future."
— Balean, Platform Team
Navigate secrets in a file-browser style view — filter by prefix, see versions and KMS key bindings at a glance, and create new secrets from any folder.

Create a KMS key, bind a secret to a path, and generate a random password — all declaratively with the Thalassa Terraform provider. See the Terraform documentation for provider setup.

generate_secret for platform-generated values.Identify secrets by paths like /app/production/database/password. Browse in the console or list by prefix for automation.
/ci/prod/*No third-party secret backend to operate — every secret uses envelope encryption with a KMS key you control.
Add new secret values without losing history. Destroy individual versions when credentials rotate out.
Optional restrictions beyond IAM, with dedicated audit events for sensitive operations.
Explore the Secrets Manager documentation for paths and naming, KMS integration, versioning, access policies, audit logging, and API reference.
European Public Cloud
Deploy and manage your cloud-native applications with our European based public cloud. Access powerful APIs, Kubernetes orchestration, and DevOps tools designed for modern infrastructure.
EU Data Sovereignty
Terraform & REST API
Self-Service Kubernetes as a Service
NVMe Storage, CPU and network
Code. Ship. Scale. • Pay-as-you-go pricing