
Shelve
by Shelve · Secrets management with CLI access, GitHub sync and audit logging
BenchRank score
Screenshots of Shelve
Homepage
Overview
Shelve stores API keys, tokens and environment variables in one dashboard and syncs them across environments. Each variable is encrypted with a per-project data encryption key that is itself sealed by a platform key encryption key, and access is controlled through team roles and scoped API tokens. A CLI and an official GitHub App keep local shells and GitHub Actions secrets in step.
- Best for
- Development teams syncing API keys and environment variables across stages via CLI and GitHub
- Pricing
- No prices are shown in the captured text; the homepage FAQ lists the question "Is Shelve free?" but the answer is not captured.
- Runs on
- WebSelf-hostedCLI
Strengths and trade-offs
Strengths
- Per-project encryption keys, sealed by a platform KEK
- API tokens scoped by project or environment, with optional expiry
- Audit log with actor, IP and user agent, queryable via API
- shelve init adds ignore files so AI agents skip .env files
Trade-offs
- No pricing published on the site, so cost cannot be assessed
- Platform holds the key-encryption key, so it is not zero-knowledge
- Only CLI and GitHub integrations are named; no other CI platforms
- Fixed roles (Owner, Admin, Member) with no custom roles described
How Shelve markets itself
A structured read of the promise, proof and page design on Shelve’s captured homepage.
Homepage capture
“Your secure foundation for effortless secrets management”
- Angle: Security / trust-led
- Hero: Abstract graphic
Pricing
Published plans and prices from Shelve’s own pricing page.
How this score is made up
Each dimension is scored out of 100 and combined into the headline score using fixed weights.
MCP support
Whether an agent can drive the product through the Model Context Protocol, and how much setup that takes.
API quality
Public API surface: machine-readable spec, official SDKs, documented auth, errors, rate limits and versioning.
Documentation
Publicly reachable docs — coverage, freshness, code samples and machine readability.
Agent friendliness
How readable the site is to an automated client: llms.txt, structured data, server-rendered content, crawler access.
Changelog
A public, dated record of what shipped and when — the clearest signal that a product is still alive.
Marketing site structure
Whether the site answers a buyer's questions: clear positioning, the pages that matter, and accessibility.
Page speed
How fast the site loads for real visitors: Chrome UX Report 75th-percentile LCP, INP and CLS, with a Lighthouse mobile run standing in where a site has too little traffic for field data.
Operational trust
Status page and incident history, security disclosure, compliance and data-processing documentation.
Measured, but not part of the score
Useful to know, but not a mark for or against the product — so these do not affect the ranking.
Openness
Source availability, self-hosting, data export and open standards. Scored and shown, but not part of the composite — paid SaaS is not worse for being paid SaaS.
Maintenance
Release cadence and repository activity. Scored and shown, but not part of the composite — it is only measurable for open repositories.
This doesn’t look right — report a problem with Shelve’s score
Where this comes from
The Shelve pages BenchRank reads when it scores the product — its documentation, release notes, status and security pages, and its repository where there is one.
Alternatives in Project & Work Management
Ranked 1
86.9 — BenchRank score out of 100DevClocked
devclocked · Time and token tracking for human and AI-agent engineering work
Best for: Solo developers, teams and agencies who need time, agent-run and token data tied to shipped work.
Ranked 2
80.8 — BenchRank score out of 100Plane
Plane · Project management, wiki and AI agents in one workspace
Best for: Teams leaving Jira or Linear that want projects, docs and AI agents in one self-hostable tool
Ranked 3
80.5 — BenchRank score out of 100GitLab
GitLab · DevSecOps platform with AI agents across planning, code, CI/CD and security
Best for: Teams that want planning, source control, CI/CD and security scanning in one platform.
Is this your product?
Claim Shelve to manage its profile. Claiming lets you suggest edits to the descriptive fields — it never changes scores or rankings.


