From 90c5f9db54587d8da544912139ffce6930ac0572 Mon Sep 17 00:00:00 2001 From: Alex <52247724+Elya29@users.noreply.github.com> Date: Thu, 25 Jan 2024 10:32:34 +0100 Subject: [PATCH] Update writing.md add warning about hard coded RSA Private Keys. Signed-off-by: Alex <52247724+Elya29@users.noreply.github.com> --- docs/conf/writing.md | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/docs/conf/writing.md b/docs/conf/writing.md index aef9620373..b2c098e12b 100644 --- a/docs/conf/writing.md +++ b/docs/conf/writing.md @@ -220,6 +220,8 @@ clientSecret: someGithubAppClientSecret webhookSecret: someWebhookSecret privateKey: | -----BEGIN RSA PRIVATE KEY----- - SomeRsaPrivateKey + SomeRsaPrivateKeyForExampleOnly -----END RSA PRIVATE KEY----- ``` + +**Warning: RSA private keys should not be hard coded**. Keep them in a secure storage solution like Vault, to ensure they are neither exposed nor misused.