2.3 Secrets Management

Credentials and sensitive configuration require different handling across Edition types.

Staging Edition

Secrets stored directly in Application Layer database via plugin settings. Acceptable for single-operator deployments. Not suitable for team environments or CI/CD integration.

Enterprise Edition

SDLC Platform provides:

Variable Groups: Shared secrets across pipelines with access control.

Service Connections: Authenticated access to external services.

Key Vault Integration: For high-security requirements, secrets stored in dedicated vault with pipeline access.

Credentials Inventory

CredentialStorage LocationRotation Schedule
Database passwordHosting Control PanelOn breach only
SMTP credentialsSMTP plugin settingsAnnual
CDN API keyServer-Side Caching settingsAnnual
SDLC Platform tokenLocal config / Variable Group90 days