How values are protected
Values are encrypted with AES-256-GCM before storage. Read responses include metadata but never return the secret's original value.
Create and synchronize
- 1Add a variable
Define a name and value in Variables, paste pairs, or import a .env file.
- 2Choose the scope
Associate the secret with one project or share it across several projects.
- 3Synchronize
TuCloud updates the required GitHub Actions secrets without adding them to the repository.
- 4Redeploy
Environment changes apply to new releases; start another deployment when needed.
.env format
DATABASE_URL=https://example.invalid
PUBLIC_SITE_NAME=My site
FEATURE_FLAG=true