logoalt Hacker News

CGamesPlaylast Saturday at 7:31 AM1 replyview on HN

SOPS reduces the surface area you need to cover. You can use Age as a backend and then you only need a long lived private key on the server. https://github.com/getsops/sops


Replies

Nextgridlast Saturday at 6:37 PM

The bad guys will steal that private key and decrypt the encrypted secrets the same way they can steal the unencrypted secrets directly.

show 1 reply