- Changed Secret.GetValue and Version.GetValue to return *memguard.LockedBuffer - Updated all internal callers to handle LockedBuffer properly - For backward compatibility, vault.GetSecret still returns []byte but makes a copy - This ensures secret values are protected in memory during decryption - Updated tests to handle LockedBuffer returns - Fixed CLI getSecretValue to use LockedBuffer throughout |
||
---|---|---|
.. | ||
integration_test.go | ||
integration_version_test.go | ||
management.go | ||
metadata_test.go | ||
metadata.go | ||
secrets_version_test.go | ||
secrets.go | ||
unlockers.go | ||
vault_test.go | ||
vault.go |