Is Your Organization Handling Secrets Securely?

The Secrets of Avoiding Hardcoded Secrets

Shiv Sahni
InfoSec Write-ups
Published in
7 min readMay 17, 2020


I remember the early days of my application security journey where we used to identify hardcoded secrets in the backend code, in almost every source code review engagement and at that time I used to struggle a lot to come up with the best remediation considering the cost and overall architecture.



Security Engineer |Security Consultant |Infosec Trainer | Author | Lecturer | Open Source Contributor | Learner