AIAP: Passwords and tokens are stored as plaintext #636
Labels
bug
Something isn't working
priority/critical
Items critical to be implemented, usually by the next release
size m
Milestone
Describe the bug
When providing a password or personal access token to AIAP, the value is used as an environment variable, meaning that it is easily accessible via a
kubectl describe
of the podSteps To Reproduce
Deploy an instance of AIAP with a specified password.
Expected behavior
Passwords should not be visibile
The text was updated successfully, but these errors were encountered: