hasura / hasura/graphql-engine
Improved Info Security Practices
- Dominant language
- TypeScript
- Stars
- 32.1k
- Forks
- 3k
- PR merge metrics
- PR metrics pending
Description
### Component
Securing Secrets and Keys
-->
### Is your proposal related to a problem?
The mechanisms currently available are Environment Variable based- these are inadequate and does not satisfy best infosec practices for securing deployments and applications.
### Describe the solution you'd like
Support Hashicorp Vault (raised in #10195)
Support AWS Secret Manager
### Describe alternatives you've considered
N/A
Contributor guide
Research direction
No files, tests, or entry points are identified. Start by examining the existing environment-variable secret mechanism, then define requirements for HashiCorp Vault and AWS Secrets Manager; done means both requested secret-management options are supported.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- aws
- Domain
- cloud, security
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 25/100