Credential management
Any AWS account, connected in seconds.
Six credential types, chosen from one picker that asks how you connect. Your ~/.aws profiles are read in place, Test Connection runs before you save, and managed secrets live in your OS keyring, never in a plaintext file.
Try Free for 14 DaysHighlights
IAM keys, MFA, IAM Identity Center SSO, AWS Login with passkeys, credential process, and local endpoints.
New Profile asks How do you connect to AWS? and offers six cards: Access keys, IAM Identity Center, AWS Login, MFA, Local DynamoDB, and Credential Process. Pick one and its form opens with the chosen type pinned in the header.
Profiles from ~/.aws/config appear in the manager under their own heading, read-only, edited with the AWS CLI. Dynomatic never rewrites the file.
Managed secrets live in Apple Keychain, Windows Credential Manager, or Linux Secret Service. The edit form never receives them back. Leave a secret blank to keep it.
Test Connection runs the real sign-in from the form before the profile exists. It writes one temporary keyring entry for the run and removes it after.
A workspace is one profile at one region. Open as many as you like. Each owns its saved queries, scripts, table settings, favorites, and history.