#SecretsManagement
docker run -e DB_PASSWORD=... is how credentials end up in logs and public issue trackers. Docker secrets exist for this. Learn when env vars are still fine.

https://www.valtersit.com/guides/docker/docker-secrets-vs-env-vars-credential-management/

#docker #devsecops #secretsmanagement
September 24, 2026 at 2:00 AM
Your .env file is a credential leak waiting to happen. Vault plus dynamic secrets can kill static keys for good. Here's the blueprint.

https://www.valtersit.com/guides/gitlab/beyond_env-managing_production_secrets_without_getting_hacked/

#devsecops #vault #secretsmanagement
September 23, 2026 at 1:20 AM
September 15, 2026 at 9:18 AM
Insight: Sensitive output values in Terraform still show up in state files. If your state backend isn't encrypted, your API keys are exposed. Use tools like Vault to manage secrets securely. 🔒 #terraformsecurity #secretsmanagement
September 10, 2026 at 9:00 PM
Secrets sprawl is a security + audit nightmare. HashiCorp Vault: dynamic short-lived credentials, PKI, encryption-as-a-service — and when it's worth it over cloud-native tools. www.oreonit.com/hashicorp-va...

#Vault #SecretsManagement #DevSecOps #DevOps
September 4, 2026 at 5:45 AM
Long lived API keys are a compromise waiting to be found in logs, config files, and developer notes. Rotate on schedule, leak-check continuously, and give each key a scope and a clock. Keys that never expire are keys someone already stole. #SecretsManagement #Security #DevSecOps
August 20, 2026 at 11:05 AM
Credential rotation moved from quarterly chore to automated lifecycle. Short-lived tokens with automatic refresh, vault-managed injection and expiry alerts replaced the spreadsheet of forgotten API keys. The best credential is the one nobody has to know. #SecretsManagement #DevSecOps #Security
August 20, 2026 at 5:08 AM
Secrets scanning became a pre-push habit instead of an incident response. Git hooks, pre-commit pipelines and CI gates catch AWS keys and database URIs before they leave the laptop. Rotating the leak costs a week, blocking it costs a second. #SecretsManagement #DevSecOps #AppSec
August 20, 2026 at 4:58 AM
Secrets detection moved from post-commit shame to pre-commit gate. Hook-based scanning catches AWS keys and database URIs before they ever touch the repo, and short-lived credentials made the leaked-key blast window smaller than the incident response meeting. #SecretsManagement #AppSec #DevSecOps
August 20, 2026 at 4:48 AM
Secret detection became a lot less noisy this year. Context aware scanners stopped flagging test fixtures, rotation workflows joined the alerting chain, and commit hooks catch leaks early. Leaked credentials get caught at the keyboard, not weeks later. #SecretsManagement #Security #DevSecOps
August 20, 2026 at 4:37 AM
AI agents aren’t just answering questions anymore — they can take actions using corporate API keys and tokens.

The problem?

Some MCP…

https://en.hacks.gr/pos-ta-mcp-servers-ekthetoyn-ta-mystika-ton-epicheiriseon/

#Cybersecurity #ModelContextProtocol #PromptInjection #SecretsManagement #AIAgents
August 18, 2026 at 6:29 AM
Join us at the #Securosys User end developer Conference in #Zürich on Septmeber 15th!

@pree.dev and I will give a talk on #OpenBao

www.securosys.com/sudc2026/ove...

#Opensource #Secretsmanagement #oss
Securosys User & Developer Conference (SUDC) 2026 - Event Details
Join top HSM experts at the 9th edition of SUDC in Zurich on Tuesday, 15 September 2026, to explore trends, network, and shape the future of cybersecurity.
www.securosys.com
August 18, 2026 at 4:54 AM
August 12, 2026 at 7:51 PM
August 12, 2026 at 9:37 AM
Read more: https://sports-blog.oriz.in/blog/backing-up-secrets-environment-variables/

#SecretsManagement #DevOps #DeveloperTools
August 12, 2026 at 9:37 AM
August 12, 2026 at 9:37 AM
Read more: https://news-blog.oriz.in/blog/backing-up-secrets-environment-variables/

#SecretsManagement #DevOps #DeveloperTools
August 12, 2026 at 9:37 AM
Ever wondered what a performance review for an AI agent would sound like? We did too. One of the rare occasions where “going above and beyond” isn’t necessarily a good thing.

#Doppler #SecretsManagement #AIagents
July 30, 2026 at 8:24 PM
The biggest AI security questions aren't about what your agents are doing today. They're about what they could do.

Our CEO, Amber Britton, poses key questions every team should ask before giving agents access to infrastructure.

Watch her full take here: zurl.co/DXbkh

#Doppler #SecretsManagement
July 21, 2026 at 5:01 PM
Edge apps, AI agents, CI/CD, and production services all need secrets.

Centralizing secrets keeps sensitive configuration consistent, auditable, and out of places it doesn't belong.

📖 Read the guide: zurl.co/ntyqg

🔗 See how Doppler works: zurl.co/sGX7x

#Doppler #SecretsManagement #AIAgents
July 16, 2026 at 8:14 PM
July 14, 2026 at 10:16 AM
If your team uses .env files, you already have a secrets management problem.

Our latest guide covers five secrets management best practices for building a production-ready approach.

#Doppler #SecretsManagement

zurl.co/VCHE4
July 10, 2026 at 8:46 PM