--- title: "Heroku" description: "How to sync secrets from Infisical to Heroku" --- Prerequisites: - Set up and add envars to [Infisical Cloud](https://app.infisical.com) ## Navigate to your project's integrations tab ![integrations](../../images/integrations.png) ## Authorize Infisical for Heroku Press on the Heroku tile and grant Infisical access to your Heroku account. ![integrations heroku authorization](../../images/integrations/heroku/integrations-heroku-auth.png) If this is your project's first cloud integration, then you'll have to grant Infisical access to your project's environment variables. Although this step breaks E2EE, it's necessary for Infisical to sync the environment variables to the cloud platform. ## Start integration Select which Infisical environment secrets you want to sync to which Heroku app and press create integration to start syncing secrets to Heroku. ![integrations heroku](../../images/integrations/heroku/integrations-heroku-create.png) ![integrations heroku](../../images/integrations/heroku/integrations-heroku.png) Using the Heroku integration on a self-hosted instance of Infisical requires configuring an API client in Heroku and registering your instance with it. ## Create an API client in Heroku Navigate to your user Account settings > Applications to create a new API client. ![integrations Heroku config](../../images/integrations/heroku/integrations-heroku-config-settings.png) ![integrations Heroku config](../../images/integrations/heroku/integrations-heroku-config-applications.png) ![integrations Heroku config](../../images/integrations/heroku/integrations-heroku-config-new-app.png) Create the API client. As part of the form, set the **OAuth callback URL** to `https://your-domain.com/integrations/heroku/oauth2/callback`. ![integrations Heroku config](../../images/integrations/heroku/integrations-heroku-config-new-app-form.png) ## Add your Heroku API client credentials to Infisical Obtain the **Client ID** and **Client Secret** for your Heroku API client. ![integrations Heroku config](../../images/integrations/heroku/integrations-heroku-config-credentials.png) Back in your Infisical instance, add two new environment variables for the credentials of your Heroku API client. - `CLIENT_ID_HEROKU`: The **Client ID** of your Heroku API client. - `CLIENT_SECRET_HEROKU`: The **Client Secret** of your Heroku API client. Once added, restart your Infisical instance and use the Heroku integration.