uvb-secret-access-control 0.2.1

Secret storage access control and encryption key management for UVB
Documentation

Secret Access Control

Enterprise-grade secret access control to address:

  • Risk #33: Secrets accessible by too many internal services

Features

  • Service Identity Verification: Authenticate services via mTLS certificates
  • Principle of Least Privilege: Grant minimum required permissions
  • Service-Specific Secret Scoping: Secrets scoped to specific services
  • Access Audit Logging: Log all secret access attempts
  • Role-Based Access Control (RBAC): Define roles and permissions
  • Secret Access Policies: Fine-grained access control policies
  • Access Request Workflow: Approval workflow for sensitive secrets
  • Temporary Access Grants: Time-limited secret access