# OpenBao

> MPL-2.0 Vault-compatible secrets engine after the Vault fork

**Category:** Next.js  
**Pricing:** open-source  
**URL:** https://openbao.org  
**GitHub:** https://github.com/openbao/openbao  
**Added:** 2026-09-04

---

## The Hook

OpenBao is the Vault-shaped secrets engine you run when the HashiCorp license line is the problem.

## What's Good

MPL-2.0. Linux Foundation Vault-compatible fork. KV, transit, auth methods, policies — the engine shape teams already know. Self-host is the free path.

## The Catch

Vault-engine / IdP-secrets lane, not Infisical app-secrets DX. Infisical already shipped — this is the engine/compat fork, not the developer-secrets UI. Do not invent Cloud free tiers.

## Verdict

MPL Vault-compat engine. Fork for license, not Infisical DX.
