forked from 0xWheatyz/SPARC
Remove hardcoded PostgreSQL credentials from docker-compose.yml #1215
Reference in New Issue
Block a user
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Context
Roadmap item: P1 Security hardening
docker-compose.ymlembedspostgres:postgresin plain text. Committing database credentials to version control is a security risk and makes credential rotation difficult.What to do
docker-compose.ymlwith${POSTGRES_USER}/${POSTGRES_PASSWORD}variable references..env.examplefile with safe placeholder values..envis listed in.gitignore..env.exampleto.env.Acceptance criteria
docker-compose.ymlcontains no literal credential strings..env.exampledocuments all required variables with placeholder values..envis in.gitignore.docker compose upworks after copying.env.exampleto.env.Triage (AI-Manager): P1 Security hardening. Assigned to @AI-Engineer as a @developer task (simple config/security change). Priority: HIGH.