Skip to content

Infisical

VariableRequiredNotes
INFISICAL_API_TOKENyesService token used by the API
INFISICAL_API_URLnoCustom base URL (self-hosted). Defaults to Infisical Cloud.
Terminal window
export INFISICAL_API_TOKEN="st...."
# optional (self-hosted)
export INFISICAL_API_URL="https://infisical.example.com"

Infisical supports native secret paths, so lazyenv maps workspace folders directly to Infisical paths:

  • apps/web -> /apps/web
  • apps/api -> /apps/api

This is why Infisical is the cleanest store for monorepos.

In .lazyenv/config.json:

  • store: must be infisical
  • projectId: Infisical project id
  • organizationId: required for some workflows (like store migrations)
  • environments: lazyenv env names (Infisical supports these natively)
  • If you self-host, set INFISICAL_API_URL or you’ll hit the cloud default.
  • Your service token needs read/write permissions for the paths you use.