pub struct SecretString(/* private fields */);Expand description
Re-export SecretString so consumers (web-api, CLI, openapi-client) can
use it without a direct uptrakit-shared-types dependency.
A newtype wrapper for strings that contain sensitive data (secrets, tokens,
passwords).
§Security properties
DebugandDisplayimplementations redact the value, preventing accidental exposure in logs, error chains, and tracing output.ZeroizeOnDropoverwrites the backing heap allocation with zeros when the value is dropped.Serializeis transparent (#[serde(transparent)]): serializing aSecretStringemits the plaintext value. Never serialize structs containingSecretStringto logs or debug output — useDebugformatting instead.Clonecreates a new heap allocation containing the secret. Each clone must be properly dropped (not leaked or stored in a non-zeroizing container) to ensure the zeroize guarantee is upheld.PartialEquses the standardStringcomparison, which short-circuits on the first mismatched byte. Do not usePartialEqfor authentication comparisons where timing side channels are a concern; use a constant-time comparison function instead (e.g.,subtle::ConstantTimeEqorargon2::password_hash::PasswordVerifier).
Implementations§
Source§impl SecretString
impl SecretString
Sourcepub fn new(value: impl Into<String>) -> SecretString
pub fn new(value: impl Into<String>) -> SecretString
Wrap a plaintext value.
Sourcepub fn expose_secret(&self) -> &str
pub fn expose_secret(&self) -> &str
Borrow the plaintext secret.
Trait Implementations§
Source§impl Clone for SecretString
impl Clone for SecretString
Source§fn clone(&self) -> SecretString
fn clone(&self) -> SecretString
Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
Performs copy-assignment from
source. Read moreSource§impl Debug for SecretString
impl Debug for SecretString
Source§impl Default for SecretString
impl Default for SecretString
Source§fn default() -> SecretString
fn default() -> SecretString
Returns the “default value” for a type. Read more
Source§impl<'de> Deserialize<'de> for SecretString
impl<'de> Deserialize<'de> for SecretString
Source§fn deserialize<__D>(
__deserializer: __D,
) -> Result<SecretString, <__D as Deserializer<'de>>::Error>where
__D: Deserializer<'de>,
fn deserialize<__D>(
__deserializer: __D,
) -> Result<SecretString, <__D as Deserializer<'de>>::Error>where
__D: Deserializer<'de>,
Deserialize this value from the given Serde deserializer. Read more
Source§impl Display for SecretString
impl Display for SecretString
Source§impl Drop for SecretString
impl Drop for SecretString
impl Eq for SecretString
Source§impl Hash for SecretString
impl Hash for SecretString
Source§impl PartialEq for SecretString
impl PartialEq for SecretString
Source§impl Serialize for SecretString
impl Serialize for SecretString
Source§fn serialize<__S>(
&self,
__serializer: __S,
) -> Result<<__S as Serializer>::Ok, <__S as Serializer>::Error>where
__S: Serializer,
fn serialize<__S>(
&self,
__serializer: __S,
) -> Result<<__S as Serializer>::Ok, <__S as Serializer>::Error>where
__S: Serializer,
Serialize this value into the given Serde serializer. Read more
impl StructuralPartialEq for SecretString
Auto Trait Implementations§
impl Freeze for SecretString
impl RefUnwindSafe for SecretString
impl Send for SecretString
impl Sync for SecretString
impl Unpin for SecretString
impl UnsafeUnpin for SecretString
impl UnwindSafe for SecretString
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> DeserializeOwned for Twhere
T: for<'de> Deserialize<'de>,
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§fn equivalent(&self, key: &K) -> bool
fn equivalent(&self, key: &K) -> bool
Compare self to
key and return true if they are equal.Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
Source§fn in_current_span(self) -> Instrumented<Self> ⓘ
fn in_current_span(self) -> Instrumented<Self> ⓘ
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
Converts
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
Converts
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read more