Secret Store Over Hardcoded Secrets
Kind: algorithm
Record: algorithms:no-hardcoded-secrets
Canonical: Algorithms
Closure: Dependencies in load order
Replace an inline secret with a resolved read from a secret store that fails fast when the secret is absent.
Listed in Algorithm contracts, after Computed Health Over Metric Health and before Boundary Validation Over Unvalidated Input.