---
title: doctl secrets
description: |-
    The subcommands of `doctl secrets` manage Secrets Manager secret containers.

    Each secret is a named container in a region that holds one or more …
product: Reference
url: https://docs.digitalocean.com/reference/doctl/reference/secrets/
last_updated: "2026-08-18"
---

> **For AI agents:** The documentation index is at [https://docs.digitalocean.com/llms.txt](https://docs.digitalocean.com/llms.txt). Markdown versions of pages use the same URL with `index.html.md` in place of the HTML page (for example, append `index.html.md` to the directory path instead of opening the HTML document).

# doctl secrets

Generated on 18 Aug 2026 from `doctl` version [`v1.167.0`](https://github.com/digitalocean/doctl/releases/tag/v1.167.0)

## Description

The subcommands of `doctl secrets` manage Secrets Manager secret containers.

Each secret is a named container in a region that holds one or more key-value pairs.

## Flags

| Option | Description |
|---|---|
| `--help`, `-h` | Help for this command |

## Related Commands

| Command | Description |
|---|---|
| [doctl](https://docs.digitalocean.com/reference/doctl/reference/index.html.md) | doctl is a command line interface (CLI) for the DigitalOcean API. |
| [doctl secrets create](https://docs.digitalocean.com/reference/doctl/reference/secrets/create) | Create a secret |
| [doctl secrets delete](https://docs.digitalocean.com/reference/doctl/reference/secrets/delete) | Delete a secret |
| [doctl secrets get](https://docs.digitalocean.com/reference/doctl/reference/secrets/get) | Get a secret |
| [doctl secrets list](https://docs.digitalocean.com/reference/doctl/reference/secrets/list) | List secrets |
| [doctl secrets list-versions](https://docs.digitalocean.com/reference/doctl/reference/secrets/list-versions) | List secret versions |
| [doctl secrets restore](https://docs.digitalocean.com/reference/doctl/reference/secrets/restore) | Restore a secret |
| [doctl secrets set](https://docs.digitalocean.com/reference/doctl/reference/secrets/set) | Set keys on a secret |
| [doctl secrets unset](https://docs.digitalocean.com/reference/doctl/reference/secrets/unset) | Remove keys from a secret |
| [doctl secrets update](https://docs.digitalocean.com/reference/doctl/reference/secrets/update) | Replace a secret |

## Global Flags

Option Description

`--access-token`, `-t` API V2 access token

`--api-url`, `-u` Override default API endpoint

`--config`, `-c` Specify a custom config file, Default:

`--context` Specify a custom authentication context name

`--http-retry-max` Set maximum number of retries for requests that fail with a 429 or 500-level error , Default: `5`

`--http-retry-wait-max` Set the minimum number of seconds to wait before retrying a failed request , Default: `30`

`--http-retry-wait-min` Set the maximum number of seconds to wait before retrying a failed request , Default: `1`

`--interactive` Enable interactive behavior. Defaults to true if the terminal supports it (default false) , Default: `false`

`--output`, `-o` Desired output format \[text|json], Default: `text`

`--trace` Show a log of network activity while performing a command, Default: `false`

`--verbose`, `-v` Enable verbose output, Default: `false`