Secrets Management

Kind: activity

Layer: Security Core

Record: architecture:secrets-management

Severity: mandatory

Scope: config, deployment, runtime

Canonical: Ontology

The practice of keeping credentials in a secret store, reading them at runtime and rotating them on a schedule.

Listed in Architecture principles, after Encryption in Transit and before Privacy by Design.

Requires

Reinforces

Enables

Conflicts with

In tension with

Tensions

Contracts

Violated by

Refactored by

Severity

Category

Enforced by

Linked from

in this codebase