Templatescryptomator
cryptomator
security

cryptomator

Self-hosted key management and access control server for sharing Cryptomator-encrypted vaults across teams.

securityidentitystoragePostgreSQL

What gets deployed

Web

cryptomator server

PostgreSQL

managed database

GitHub stars700

About

Self-hosted key management and access control server for sharing Cryptomator-encrypted vaults across teams.

Managed services

  • PostgreSQLTCP:5432

Environment Variables

VariableDescriptionRequired
QUARKUS_HTTP_PORTDefault: 8080Optional
QUARKUS_DATASOURCE_JDBC_URLDefault: jdbc:postgresql://{{KUBERO_APP_NAME}}-postgresql-rw:5432/cryptomatorOptional
QUARKUS_DATASOURCE_USERNAMEDefault: cryptomatorOptional
QUARKUS_DATASOURCE_PASSWORDDefault: cryptomatorOptional
HUB_PUBLIC_ROOT_PATHDefault: /Optional
HUB_PUBLIC_URLDefault: {{KUBERO_APP_URL}}Optional
HUB_KEYCLOAK_PUBLIC_URLDefault: {{KUBERO_APP_URL}}/kcOptional
HUB_KEYCLOAK_LOCAL_URLDefault: http://cryptomator-idp:8080Optional
HUB_KEYCLOAK_REALMDefault: cryptomatorOptional
HUB_KEYCLOAK_SYSTEM_CLIENT_IDDefault: cryptomatorhub-systemOptional
HUB_KEYCLOAK_SYSTEM_CLIENT_SECRETDefault: cryptomatorOptional
HUB_KEYCLOAK_SYNCER_PERIODDefault: 5mOptional
HUB_KEYCLOAK_OIDC_CRYPTOMATOR_CLIENT_IDDefault: cryptomatorOptional
QUARKUS_OIDC_AUTH_SERVER_URLDefault: http://cryptomator-idp:8080/realms/cryptomatorOptional
QUARKUS_OIDC_CLIENT_IDDefault: cryptomatorhubOptional
QUARKUS_OIDC_TOKEN_ISSUERDefault: anyOptional
QUARKUS_HTTP_PROXY_PROXY_ADDRESS_FORWARDINGDefault: trueOptional
QUARKUS_OTEL_SDK_DISABLEDDefault: trueOptional

Deploy cryptomator

One click to deploy a fully configured cryptomator instance with all dependencies pre-wired.

Deploy Now

Ready to deploy cryptomator?

No infrastructure to manage. Just connect your repo and go live in seconds.