2
SMTP_PASSWORD: better to keep secret
Source: dani-garcia/vaultwarden#5432 · opened by @CharlesMAtkinson
I write with knowledge of Linux, not other OSes.
Ideally Vaultwarden's SMTP_PASSWORD would be secret so:
• Not kept in plain text on the file system
• Not passed on the command line
• Not passed as an environment variable
All three could be satisfied by a new Vaultwarden feature to configure SMTP in the UI rather than by environment variables.
Ideally Vaultwarden's SMTP_PASSWORD would be secret so:
• Not kept in plain text on the file system
• Not passed on the command line
• Not passed as an environment variable
All three could be satisfied by a new Vaultwarden feature to configure SMTP in the UI rather than by environment variables.
No pledges yet. Be the first to back this.
Comments
Similar requests
Move SSO_CLIENT_SECRET to the Read Only Admin Panel or Encrypt it
1 vote · 0 comments
Support SPIFFE authentication for M2M scenario
2 votes · 0 comments
Why "remove less-then and greater-then signs from config values to prevent issues"?
1 vote · 0 comments
Feature Request: MCP Wallet/Server Integration for AI Agent Authentication
2 votes · 0 comments
Docker Secrets integration
3 votes · 0 comments
No comments yet.