[Lilug] Auditing git for secrets? Suggestions?

odinson at warcloud.net odinson at warcloud.net
Tue Oct 21 09:06:24 PDT 2025


Hello All

 	This is a huge topic, and careers can be exclusively made in this 
space.  How do you harden your git trees/repos against revealing secrets? 
In case the tree falls into the wrong hands.  Or is even intended for the 
public to see.

 	I'm specifically looking in admin/engineer space like ansible,
but more  code orientated answers like CI/CD pipelines are welcome too. 
Looking for both practical techniques, and professional software and 
services.

What's the norm, and separately, what is effective?

Thanks for tipping your brains my direction.

Matt

-------------------------------------------------------------------------------
Matthew Newhall, M.A.Newhall at warcloud.net
A.S. in Computer Science, SUNY Farmingdale
My weekly podcast, The Technocrat Live.  http://www.thetechnocratlive.com
President and founder of LILUG;  president at lilug.org, http://www.lilug.org
My theory; Psychopaths precede the conscience, http://civgene.matthewnewhall.com
Scifi book; "Thicker Than Blood"  http://www.thickerthanbloodthebook.com
My maker blog; "The modness", http://themodness.wordpress.com

People who put identity with a group above managing their own faith are the
problem.
-------------------------------------------------------------------------------


More information about the Lilug mailing list