Feature request: Secure API token storage using system keyring
Feature request: Secure API token storage using system keyring: a task in LegoFlow-SWE (Harbor dataset). Currently ggshield stores authentication tokens in cleartext inside the global auth config.yaml file. Any process or user with filesystem access can read the tokens, which is a security…
The task
Currently `ggshield` stores authentication tokens in cleartext inside the global `auth_config.yaml` file. Any process or user with filesystem access can read the tokens, which is a security concern. We should leverage the OS native credential store (macOS Keychain, Windows Credential Locker, Linux Secret Service)…
Part of Lego-X/LegoFlow-SWE.