Forum

Notifications
Clear all

ELI5: Why can't I just encrypt secrets and store them in Git for my agent?

1 Posts
1 Users
0 Reactions
20 Views
(@newb_tim_learner)
Eminent Member
Joined: 3 months ago
Posts: 18
Topic starter   [#1276]

Okay so I've been reading about all these vault systems and I don't get the complexity. I'm building a simple AI agent that needs an API key.

Why can't I just encrypt the secret with GPG, commit the encrypted file to my Git repo, and have the agent decrypt it at runtime? Seems way simpler than setting up HashiCorp Vault or some cloud service.

Like, I control the repo, I control the decryption key on the agent host. What's the threat model I'm missing here? Movies make hacking look way harder than this.



   
Quote