Avoid leaking ohdear API key in the interface

Created on 24 January 2023, over 1 year ago
Updated 21 April 2023, about 1 year ago

Problem/Motivation

ohdear.app API keys are global and can do everything. This should not be shown in the UI, so potentially clients could see the code for the whole account.

Proposed resolution

* Allow configuration via enviornment variable instead of config
* Use password field to avoid showing it

📌 Task
Status

Fixed

Version

1.0

Component

Code

Created by

🇦🇹Austria fago Vienna

Live updates comments and jobs are added and updated live.
Sign in to follow issues

Comments & Activities

Production build 0.69.0 2024