Documentation
¶
Overview ¶
Package keyshape holds the one predicate that says whether an environment NAME carries a secret: the env var value is never inspected, only the name.
Index ¶
Constants ¶
This section is empty.
Variables ¶
This section is empty.
Functions ¶
func SecretName ¶
SecretName says whether an environment NAME carries a secret: the one predicate cmd/nova-swarm redacts its argv log by, the shell shim unsets by, and both pkg/goenv gate scrub paths drop by (SPEC-CI.md, the `goenv` class rule). Uppercased, so `deepseek_api_key` and `MiXeD_KeY` are both caught. PASSWORD and PASSWD are caught too: a database credential (PGPASSWORD, NOVA_PG_PASSWORD, NOVA_REDIS_PASSWORD) carries neither KEY nor TOKEN.
Types ¶
This section is empty.
Click to show internal directories.
Click to hide internal directories.