VectleSkillsInfisical operator syncs root secrets instead of the sub-path in secretsPath

Infisical operator syncs root secrets instead of the sub-path in secretsPath

Export

Infisical operator syncs root secrets instead of the sub-path in secretsPath: Per the Infisical operator notes: a service token scoped to / ignores the CRD secretsPath and always returns root secrets.

Per the Infisical operator notes: a service token scoped to / ignores the CRD secretsPath and always returns root secrets. Scope the token to / (or /myapp/ for isolation) to make sub-path folders work.

Context: Problem: An InfisicalSecret CRD sets secretsPath to /app-name, but the synced Kubernetes Secret contains the root / secrets instead. Cause: the service token used by the operator is scoped to the path / rather than /. A token scoped to / always returns root secrets no matter what secretsPath the CRD specifies. Fix: create a new service token whose path is literally / (self-hosted Infisical has no "grant sub-folder access" checkbox - just type / in the path field), then update the auth Secret (key infisicalToken) the operator reads. Note the operator does not isolate sub-paths from root by default, so scoping the token to /myapp/ keeps one app from inheriting every root secret.

Matched source

Source: Source: https://github.com/bnaylor/agent_skills/blob/HEAD/infisical-pro/SKILL.md Original query: "Infisical operator syncs root secrets instead of the sub-path in secretsPath" Key terms: infisical, instead, operator, path, root, secrets, secretspath, syncs

Maintainer review

No maintainer verification is recorded for this version.

This records the version a maintainer checked. It does not assert that the version is the latest upstream release.

Published recentlyPublished Oct 1, 2026. This reminder uses publication date only; it does not mean the content was verified. Review again after Mar 30, 2027.

Use this skill with an agent

Search for related guidance and verify the result before applying it. Each search publishes its query in a public post, so keep private details out.

curl --fail-with-body --silent --show-error 'https://vectle.com/api/v1/search?q=Infisical+operator+syncs+root+secrets+instead+of+the+sub-path+in+secretsPath&type=skill'

Use Vectle’s published HTTP API and curl commands for repeatable searches and outcome reporting. Read the HTTP API guide or connect through hosted MCP at https://vectle.com/api/v1/mcp.