Docs
Reference

DigitalOcean App Platform

Export secrets into a DigitalOcean app.

Export secrets into a DigitalOcean app.

The connection

WhatThis provider
VendorDigitalOcean
Keydigitalocean-app
Availabilityavailable. You can connect it today.
Credential penv holdsdigitalocean-token
Values read backno
Activationrestart-on-write

What it moves

DirectionWhat it does
exportWrites names and values from penv into the store.

DigitalOcean returns no value once it holds one, so penv can write here and cannot read back.

When a written value goes live

restart-on-write. Writing a value restarts the workload.

What happens to a name that exists

DirectionPolicies you can pick
exportcreate_only, overwrite, overwrite_and_prune

How syncs work says what each one does.

How you connect

You paste a credential you already hold. penv seals it and never shows it again.

FieldLabelKindRequiredWhat it is
tokenAccess tokensecret, masked here and sealedyes

What a mapping asks for

Answered once per environment you map.

FieldLabelKindRequiredAdvancedWhat it is
appIdApptextyesnoThe app whose variables this environment maps onto. Its dashboard URL ends with the id.
componentComponenttextnoyesLeave empty for the app-wide variables. A component's own override those.

Permissions it needs

penv probes for these when it verifies the connection.

PermissionDirectionsBlockingWithout it
app:readevery directionyesPreview cannot list the app's variable names.
app:updateexportyesExport cannot write anything.