Skip to main content
Security10 min read

एनवायरनमेंट वेरिएबल्स: हर स्टार्टअप में सुरक्षा छेद

आपकी .env फ़ाइल में डेटाबेस पासवर्ड, Stripe सीक्रेट की और AWS क्रेडेंशियल्स हैं। यह एक Slack संदेश, डेवलपर के लैपटॉप और शायद कहीं Docker इमेज में है। चलिए इसे ठीक करते हैं।

Part ofCloud & Infrastructure->
By Jason TeixeiraNovember 15, 2025
SecurityEnvironment VariablesAWSDevOpsBest Practices
Share:
On this page

त्वरित ऑडिट: आपका डेटाबेस पासवर्ड अभी कहाँ है?

यदि आपने उत्तर दिया "रिपो रूट में .env फ़ाइल" — तो आप बहुमत में हैं। यदि आपने उत्तर दिया "एक नए कर्मचारी को स्लैक मैसेज में, कॉन्फ्लुएंस में एक स्क्रीनशॉट में, और उस एक Lambda फंक्शन में हार्डकोडेड जो डेव ने जाने से पहले लिखा था" — तो आप ईमानदार हैं।

पर्यावरण चर अधिकांश स्टार्टअप्स में सबसे खतरनाक इन्फ्रास्ट्रक्चर हैं क्योंकि हर कोई उन्हें एक बाद का विचार मानता है।

सामान्य गलतियाँ

गलती 1: वर्जन कंट्रोल में .env

मैंने इसे वास्तविक कंपनियों में प्रोडक्शन रिपोज में देखा है। एक \

Reader route

article -> proof -> offer

ReadClusterProofScope

cluster

Cloud & Infrastructure

intent

Security

route

next step

What to do with this

Turn the note into a build path.

If this topic maps to a real business problem, keep reading the cluster, study the academy path, or route the work into a scoped engagement.

Jason Teixeira
Written by
Jason Teixeira
Founder, Sage Ideas Studio · Principal Engineer
livebuild 5d6c8652026-08-05 06:00Z
// solo studio// no analytics resold// every commit human-reviewed