- NAME
- 
- gcloud secrets - manage secrets on Google Cloud
 
- SYNOPSIS
- 
- 
gcloud secretsGROUP|COMMAND[GCLOUD_WIDE_FLAG …]
 
- 
- DESCRIPTION
- 
Google Secret Manager allows users to store and retrieve secrets such as API
keys, certificates, passwords on Google Cloud. Google Secret Manager is
integrated with Cloud IAM and Cloud Audit Logging so users can manage
permissions on individual secrets and monitor how these are used.
To learn more about Google Secret Manager, visit: https://cloud.google.com/secret-manager/ To read API and usage documentation, visit: https://cloud.google.com/secret-manager/docs/ 
- GCLOUD WIDE FLAGS
- 
These flags are available to all commands: --help.Run $ gcloud helpfor details.
- GROUPS
- 
GROUP- locations
- Manage locations of users' secrets.
- replication
- Manage secret replication.
- versions
- Manage secret versions.
 
- COMMANDS
- 
COMMAND- add-iam-policy-binding
- Add IAM policy binding to a secret.
- create
- Create a new secret.
- delete
- Delete a secret.
- describe
- Describe a secret's metadata.
- get-iam-policy
- Get the IAM policy for the secret.
- list
- List all secret names.
- remove-iam-policy-binding
- Remove IAM policy binding for a secret.
- set-iam-policy
- Set the IAM policy binding for a secret.
- update
- Update a secret's metadata.
 
- NOTES
- 
These variants are also available:
gcloud alpha secretsgcloud beta secrets
      gcloud secrets
  
  
  Except as otherwise noted, the content of this page is licensed under the Creative Commons Attribution 4.0 License, and code samples are licensed under the Apache 2.0 License. For details, see the Google Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.
Last updated 2025-07-22 UTC.