Skip to main content

SecretSyncGithub

Resource SecretSyncGithub in pulumi-infisical.
5 min read

Resource SecretSyncGithub in pulumi-infisical.

Pulumi type: infisical:index/secretSyncGithub:SecretSyncGithub.

name is the Pulumi resource name. Nested object fields are documented under that object. They are not arguments of this resource.

Example#

Only required arguments are set. A string in angle brackets stands in for that argument. Any other value is an option or example written in the SDK description.

Arguments#

PropertyTypeRequiredDescription
autoSyncEnabledbooleannoWhether secrets should be automatically synced when changes occur at the source location or not.
connectionIdstringyesThe ID of the github Connection to use for syncing.
descriptionstringnoAn optional description for the Github sync.
destinationConfigSecretSyncGithubDestinationConfig (input)yesThe destination configuration for the secret sync.
environmentstringyesThe slug of the project environment to sync secrets from.
namestringnoThe name of the Github sync to create. Must be slug-friendly.
projectIdstringyesThe ID of the Infisical project to create the sync in.
secretPathstringyesThe folder path to sync secrets from.
syncOptionsSecretSyncGithubSyncOptions (input)yesParameters to modify how secrets are synced.

Outputs#

Computed outputs are produced by the provider. They are not constructor arguments.

PropertyTypeComputedDescription
autoSyncEnabledbooleannoWhether secrets should be automatically synced when changes occur at the source location or not.
connectionIdstringnoThe ID of the github Connection to use for syncing.
descriptionstringnoAn optional description for the Github sync.
destinationConfigSecretSyncGithubDestinationConfig (output)noThe destination configuration for the secret sync.
environmentstringnoThe slug of the project environment to sync secrets from.
namestringnoThe name of the Github sync to create. Must be slug-friendly.
projectIdstringnoThe ID of the Infisical project to create the sync in.
secretPathstringnoThe folder path to sync secrets from.
syncOptionsSecretSyncGithubSyncOptions (output)noParameters to modify how secrets are synced.

SecretSyncGithubDestinationConfig (input)#

Input object SecretSyncGithubDestinationConfig. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
repositoryEnvironmentstringnoThe environment to sync the secrets to, required if scope is repository-environment
repositoryNamestringnoThe repository to sync the secrets to, required if scope is repository or repository-environment. This is only the name of the repository, without the repository owner included. As an example if you have a repository called Infisical/go-sdk, you would only need to provide go-sdk here.
repositoryOwnerstringnoThe owner of the Github repository, required if scope is repository, repository-environment, or organization. This is the organization name, or the username for personal repositories. As an example if you have a repository called Infisical/go-sdk, you would only need to provide Infisical here.
scopestringyesThe scope to sync the secrets to, repository|organization
selectedRepositoryIdsnumber[]noThe repository ids to sync the secrets to, required if scope is organization and the visibility field is set to selected
visibilitystringnoThe visibility of the Github repository, required if scope is organization. Accepted values are: all|private|selected

SecretSyncGithubSyncOptions (input)#

Input object SecretSyncGithubSyncOptions. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
disableSecretDeletionbooleannoWhen set to true, Infisical will not remove secrets from Github. Enable this option if you intend to manage some secrets manually outside of Infisical.
initialSyncBehaviorstringyesSpecify how Infisical should resolve the initial sync to the destination. Supported options: overwrite-destination
keySchemastringnoThe format to use for structuring secret keys in the Github destination.

SecretSyncGithubDestinationConfig (output)#

Output object SecretSyncGithubDestinationConfig. Fields below belong to this object.

PropertyTypeAlways presentDescription
repositoryEnvironmentstringnoThe environment to sync the secrets to, required if scope is repository-environment
repositoryNamestringnoThe repository to sync the secrets to, required if scope is repository or repository-environment. This is only the name of the repository, without the repository owner included. As an example if you have a repository called Infisical/go-sdk, you would only need to provide go-sdk here.
repositoryOwnerstringnoThe owner of the Github repository, required if scope is repository, repository-environment, or organization. This is the organization name, or the username for personal repositories. As an example if you have a repository called Infisical/go-sdk, you would only need to provide Infisical here.
scopestringyesThe scope to sync the secrets to, repository|organization
selectedRepositoryIdsnumber[]noThe repository ids to sync the secrets to, required if scope is organization and the visibility field is set to selected
visibilitystringnoThe visibility of the Github repository, required if scope is organization. Accepted values are: all|private|selected

SecretSyncGithubSyncOptions (output)#

Output object SecretSyncGithubSyncOptions. Fields below belong to this object.

PropertyTypeAlways presentDescription
disableSecretDeletionbooleanyesWhen set to true, Infisical will not remove secrets from Github. Enable this option if you intend to manage some secrets manually outside of Infisical.
initialSyncBehaviorstringyesSpecify how Infisical should resolve the initial sync to the destination. Supported options: overwrite-destination
keySchemastringnoThe format to use for structuring secret keys in the Github destination.