hasura / hasura/graphql-engine

Improved Info Security Practices

Open
#10,199 0 comments 0 reactions 0 assignees View on GitHub
k/enhancement
Dominant language
TypeScript
Stars
32.1k
Forks
3k
PR merge metrics
PR metrics pending

Description

### Component

Securing Secrets and Keys

-->

### Is your proposal related to a problem?

The mechanisms currently available are Environment Variable based- these are inadequate and does not satisfy best infosec practices for securing deployments and applications.

### Describe the solution you'd like

Support Hashicorp Vault (raised in #10195)
Support AWS Secret Manager

### Describe alternatives you've considered

N/A

Contributor guide

Open the contributing guide

Research direction

No files, tests, or entry points are identified. Start by examining the existing environment-variable secret mechanism, then define requirements for HashiCorp Vault and AWS Secrets Manager; done means both requested secret-management options are supported.

Written by the indexing model from the issue text.

Assessment

Tech stack
aws
Domain
cloud, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.