sphericth0r

joined 1 year ago
[–] [email protected] 2 points 6 months ago

Google be in trouble then

[–] [email protected] 2 points 9 months ago (1 children)

It's probably best to look at what the devops industry is embracing, environment variables are as secure as any of the alternatives but poor implementations will always introduce attack vectors. Secret management stores require you to authenticate, which requires you to store the credential for it somewhere - no matter what there's no way to secure an insecure implementation of secrets access

[–] [email protected] 1 points 9 months ago* (last edited 9 months ago)

That's just as insecure lol, env vars are far better