Vault & Secrets
The left-sidebar key icon and Settings → Vault. Local AES-256-GCM secret storage that is never sent to Sivants, with global or per-project scoping and project-scope-wins resolution. A two-tab Secrets/Backups interface offers timed reveal, backup health, and a recovery phrase.
MCP tools: orbit_vault_get, orbit_vault_set (create-only), orbit_vault_list, orbit_vault_search, orbit_vault_detect_services.
Deep dive: context/vault-key-storage.md, context/vault-oauth-recovery-design.md.
Service Registry & Integrations
Section titled “Service Registry & Integrations”Settings → Integrations. Maps vault keys to known MCP server URLs; connected services show “MCP Available” (Copy URL) or “Built-in Tools,” and unconfigured services show Add Key.
MCP tools: orbit_mcp_detect_services, orbit_mcp_get_service_url.