
Vault by HashiCorp
Infisical
Airlock
Doppler
Pipelock
DhiWise
Tragentics
AgentLock is a security gateway for AI agents: agents request, you approve on your phone. Zero-knowledge key vault, full audit trail, free plan available.

Which is more popular?
Based on our record, Dotenv seems to be more popular. It has been mentioned 1 time since March 2021.
Website, pricing, platforms and company facts side by side.
|
|
|
|
|---|---|---|
| Website | agentlock.net | dotenv.org |
| Pricing | ||
| Platforms | ||
| Company | Startup from Switzerland · 1 - 9 employees | 2021 |
| Listed in |
In their own words, as submitted to SaaSHub.


AgentLock is a security gateway between AI agents and the services they touch. An agent sends its intended action - an HTTP call, an MCP tool call, a browser session, an SSH command - through AgentLock, where a policy decides whether it runs, is blocked, or needs human approval. Approvals arrive...
Sync .env files. Stop sharing them over insecure channels like Slack and email and never lose an important .env file again.
What each product offers, as listed by its team.


Walkthroughs and reviews on video.
No AgentLock videos yet. You could help us improve this page by suggesting one.
1 Minute Overview
More videos
How often each product is chosen within a category, 0–100% relative to the other.


As answered by people managing AgentLock and Dotenv.
AgentLock's answer
AgentLock sits between the agent and the outside world instead of trusting the agent to behave. Every HTTP call, MCP tool call, browser action or SSH command becomes a request that a policy decides on, and anything sensitive waits for a human approval that arrives on the phone. Credentials live in the vault and are injected only at execution time, so an agent can use a key without ever seeing it - and if nobody approves in time, the action simply does not happen.
AgentLock's answer
A secrets manager stores keys, but once an agent holds one, nothing stops it from making the wrong call. AgentLock covers both halves: the encrypted vault plus a gateway with policies, human approval, automatic redaction, a full timeline and undo for supported actions. It is available as an MCP server and an SDK, so an existing agent can be routed through it without a rewrite, and the free plan already covers 100 actions a month with one agent.
AgentLock's answer
Developers who run autonomous agents against real systems - deployments, payments, mail, customer data - and want an audit trail and a stop button instead of hoping the prompt holds. Small teams also use it to let an agent work with shared credentials without handing the keys to every team member or to the model itself.
AgentLock's answer
TypeScript across the stack: a React dashboard on Vercel, Supabase with Postgres, Auth and Edge Functions for data, policies and the encrypted vault, a self-hosted runner for actions that need a private network, React Native for the iOS and Android approval app, and Stripe for billing.
Share your experience with using AgentLock and Dotenv. For example, how are they different and which one is better?
External articles and on-site reviews we used to compare the two products.


We have no reviews of AgentLock yet. Be the first one to post
Dotenv makes working with .env files across a team and multiple environments a great experience. Very simple and easy to set up and easy to work with
Works smoothly without any issues and syncs env variables across different environments.
Recommendations tracked on public social media and blogs since March 2021.


Tracking AgentLock since Sep 2026.
Dotenv — Sync your .env files, quickly & securely. Stop sharing your .env files over insecure channels like Slack and email, and never lose an important .env file again. Free for up to 3 teammates. - Source: dev.to / almost 4 years ago
When comparing AgentLock and Dotenv, you can also consider the following products.


Doppler is the multi-cloud SecretOps Platform developers and security teams trust to provide secrets management at enterprise scale.
Compare Doppler to AgentLock or Dotenv:

Infisical is an open source, end-to-end encrypted platform that lets you securely sync secrets and configs across your engineering team and infrastructure
Compare Infisical to AgentLock or Dotenv:


Protect API keys and credentials. Keep configuration in sync everywhere.
Compare EnvKey to AgentLock or Dotenv:
Pipelock is an open source AI agent firewall and egress proxy. Inspect HTTP, MCP, and WebSocket traffic for leaks, injection, and tool poisoning.
Compare Pipelock to AgentLock or Dotenv: