Using GrailVault

Item types

The kinds of item GrailVault stores, from everyday logins and notes to developer keys.

Most people only need Login and Secure Note. GrailVault also has types for developers, which stay out of the way under More types (when adding an item) and the Developer group in the menu.

Every type also has Tags, Notes, Custom fields and a Favorite option. Fields marked secret are hidden until you choose Reveal.

#Everyday types

#Login

For website and app logins. This is what the browser extension saves and fills.

Field Notes
Username
Password Secret. Has a Generate password button.
Website The extension uses this to offer the login only on the right site.
Email
TOTP seed Secret. The setup key of a two-factor code, if you want to keep it here.

#Secure Note

A single Content field, treated as secret. Use it for recovery codes, instructions or anything you want kept private.

#Developer types

Choose More types when adding an item, or open the Developer group in the menu.

#API Key

Field Notes
Provider For example the name of the service.
API key Secret.
Environment Production, Staging or Development.
Base URL
Project ID

#Token

Field Notes
Token Secret.
Token type JWT, Bearer, OAuth, Personal Access Token or Refresh Token.
Issuer
Expiration Free text, for example a date.
Scope

#SSH Key

Field Notes
Host
Username
Port
Private key Secret. Multi-line.
Public key
Passphrase Secret.

#Database

Field Notes
Database type PostgreSQL, MySQL, MongoDB, Redis, SQL Server or Other.
Host, Port, Database
Username
Password Secret. Has a Generate password button.
Connection string Secret.

#Cloud Credential

Field Notes
Provider AWS, Azure, Google Cloud, Cloudflare, DigitalOcean or Other.
Access key
Secret key Secret.
Region, Account ID, Endpoint

#Custom

Starts empty. Add your own fields with + Add field, each with a name, a value and a Secret switch that hides the value.

#Custom fields on any type

Every item can have extra custom fields. Mark one as Secret and it is masked and can be revealed and copied like the built-in secrets.

Note

The browser extension, the security check and CSV import and export work with Login items. Other types are stored and protected in the same way, but are not filled into web pages.