Secrets vault for AI agents
AI hub keeps your credentials in an end-to-end encrypted vault. When Claude or another agent needs one, it asks over MCP with a reason, you approve on your phone, and the value is delivered sealed to that one session, for as long as you allow. Nothing gets pasted into the chat.
Free for up to 25 vault items. No card needed.
How it works
The agent never holds your vault. It holds one answer to one request.
Add AI hub as a connector in Claude, or run claude mcp add in Claude Code. Sign in once and approve the connection.
When a task needs a credential, the agent calls secret_request with the name and a reason you can read, plus its own age public key. It gets nothing yet.
You see who asks, for what and why. Pick the lifetime and approve: your device seals the value to that session's key, and the agent reads it with secret_get.
Use cases
Let Claude Code deploy or run a migration without a .env file left on disk. Through the local agent the value can be written to a file the session uses, so it never enters the model's context.
Agents that call your cloud, payment or model APIs ask for the key when they need it, for 15 minutes or a single read, instead of keeping it in a prompt or a config file.
Keep the two-factor seed in the vault. An approval gives the agent the six-digit codes for the next five minutes; the seed itself never leaves the vault.
When an agent creates a password or an API key during a setup, it seals it to your inbox key (secret_inbox_key) and proposes it with secret_propose. You accept all, some or none on your phone.
Works with
One remote MCP endpoint with OAuth. Nothing to install: the client registers itself, you sign in and approve the connection, and you can revoke it later.
Settings, Connectors, Add custom connector. Paste this URL and connect:
https://ai-hub.rc.center/mcpRun this, then /mcp inside Claude Code to sign in:
claude mcp add --transport http ai-hub https://ai-hub.rc.center/mcpCursor, VS Code and any client with remote MCP over streamable HTTP and OAuth. In Cursor, add this to ~/.cursor/mcp.json:
{"mcpServers": {"ai-hub": {"url": "https://ai-hub.rc.center/mcp"}}}rc-agent runs on Linux, macOS and Windows. It pairs the machine with your account, runs your Claude Code and Codex CLI sessions, and gives each one its own secrets MCP server that can deliver a value straight to a file.
The same tools on every client. Names only in listings; values only after an approval.
secret_requestsecret_getsecret_lssecret_inbox_keysecret_proposesecret_proposal_statusSecurity
A session that sends its age public key gets the value sealed to that key on your device. The hub stores and forwards ciphertext it cannot read.
The vault key is derived on your device from a master password that is never sent. The hub stores only ciphertext.
Unlock with the master password, with fingerprint or face in the Android app, or with a passkey in the web panel. Biometric data never reaches the hub.
Approve for 15 minutes, 1 hour, 8 hours or 1 day, capped at 24 hours. Make it one-time, extend it or revoke it at any moment.
Requests, approvals, denials, deliveries, extensions and revocations are recorded by secret, client and session. Each grant shows its read count.
A two-factor secret is delivered as the codes for the next five minutes. The seed stays in the vault, and TOTP is always end to end.
No tool lets a model grant itself access. Every request waits for a person on a signed-in device, and a proposal enters the vault only when you accept it.
A client that sends no key can only get a transparent delivery: the value passes through the hub over TLS and is erased when the grant ends. The tools and the approval screen say which mode applies.
Android app
The AI hub app for Android notifies you of each request and lets you approve, deny or revoke in a few seconds.
Google Play listing coming soon. No phone at hand? Approve in the web panel.
Pricing
Machines, approvals and grants are free on every plan. Pro removes the vault limit.
US$ 0
No card needed.
US$ 9/month
R$ 49/month in Brazil.
Billed by rc.center. Subscribers are told before any price change.
FAQ
No. Vault items are encrypted on your device with a key derived from your master password, which is never sent. With end-to-end delivery the value is sealed to the requesting session's key. The hub does see metadata such as secret names, reasons, clients and times.
Not with the local agent's file delivery: the value is written to a file the session uses. The remote tools tell the agent to decrypt straight into a file or an environment variable and never print the value.
Claude as a custom connector, Claude Code, Cursor, VS Code and other MCP clients that support remote servers with OAuth. The local agent also runs Claude Code and Codex CLI sessions on your machines.
No. You can approve requests in the web panel. The app adds push notifications and fingerprint or face unlock.
The vault cannot be recovered. The hub has no copy of the key, so keep the master password somewhere safe.
Free for up to 25 vault items. rc.center Pro removes the limit for US$ 9/month (R$ 49/month in Brazil), a promotional price, and also includes OTPBox.
Not yet. You can download the APK from this site today; the Google Play listing is coming.
Create an account, connect your AI tool and approve the first request in a few minutes.
Get started