Team
Shared credential for production and unattended runs.
Doppler is a secrets management platform that helps teams securely manage and sync environment variables across projects and environments.
Tools and triggers
Available tools and events after Doppler SecretOps is connected.
Tool to list workplace activity logs. Use when you need to fetch recent activity logs.
Tool to clone a branch config including all its secrets. Use after confirming the source config details.
Tool to list config change logs for a specific config. Use when you need the audit trail for a config after confirming its identity.
Tool to rollback a config to a selected log version. Use when needing to undo a specific change by its log ID, after confirming project, config, and log ID.
Tool to delete a config permanently. Use when you need to remove a config that is no longer needed.
Tool to create a branch config. Use when you need to programmatically establish a new branch-based configuration for a specified project and environment. Use after selecting the target project and environment.
Tool to create a new environment. Use when you need to programmatically create an environment for a specified project.
Tool to create a project. Use when you need to programmatically initialize a new Doppler project after authentication.
Tool to delete an environment. Use when you need to remove an environment from a project after confirming it's no longer in use.
Tool to fetch a config's details. Use when you need metadata for a specific config after specifying the project and config names. Example: "Get details for config 'staging-config' in project 'proj-123'."
Tool to retrieve an environment. Use when you need metadata for a specific environment after specifying the project and environment slug.
Tool to retrieve a project member by type and slug. Use after confirming project slug, member type, and slug.
Tool to retrieve a project role. Use when you need details of a specific project role after authenticating.
Tool to list all external integrations. Use when you need to retrieve all configured external integrations after authentication.
Tool to list open workplace invites. Use when you need to retrieve all pending invitations for the current Doppler workplace after authenticating.
Tool to list environments in a Doppler project. Use when you need environment metadata for a specific project after providing the project slug.
Tool to list Doppler projects. Use when you need to retrieve all projects with optional pagination.
Tool to lock a config. Use when you need to prevent a config from being renamed or deleted after confirming the project and config names. Example: "Lock config 'staging-config' in project 'proj-123' after finalizing…
Tool to list project-level permissions. Use when you need to fetch all available permissions for projects after authentication.
Tool to delete a project permanently. Use after confirming irreversible removal.
Tool to remove a member from a group. Use after confirming the group slug and member identifiers.
Tool to remove a member from a project. Use after confirming project slug, member type, and slug. Example: "Delete member 'jdoe' of type 'users' from project 'my-project-slug'."
Tool to rename an environment. Use when you need to update an environment's display name after confirming project and environment identifiers.
Tool to retrieve a single activity log entry by id. Use when you have a valid Activity Log id.
Tool to retrieve a specific config log entry. Use when needing details of a single config log; call after specifying project, config, and log identifiers.
Tool to revoke a dynamic secret lease. Use when you need to invalidate an active lease by its ID after confirming the config and dynamic secret identifiers.
Tool to unlock a config. Use when you need to allow renaming or deletion of a previously locked config. Example: "Unlock config 'staging-config' in project 'proj-123'."
Tool to modify an existing config. Use when you need to rename a config after confirming project and config names.
Tool to update secrets in a config. Use when you need to change secret values for deployments.
Setup
Pick a scope, then confirm what can start a Protege and what it can do.
What can start a Protege from this app.
What a Protege can do after it starts.
Prefer team for production.
Shared credential for production and unattended runs.
Tied to one user—only when the workflow needs their account.
Team-scoped for supported chat surfaces.
Build with us
Request early access or book a live walkthrough with the team.