I am a security professional and like to write, code, speak, teach, and learn - not necessarily in that order. Let's learn together.
Hey, I’m Lester Nichols
I am a security professional and like to write, code, speak, teach, and learn - not necessarily in that order. Let's learn together.
Read next
Vaultwarden and HashiCorp Vault: Different Jobs in the Same Secrets Architecture
Yesterday I wrote about moving autonomous-agent secrets out of a flat .env file. Why I kept Vaultwarden for people and recovery, added HashiCorp Vault for workloads, and treated identity, audit, PKI, and tested recovery as part of the deployment rather than follow-up work.
Moving Autonomous Agent Secrets Out of .env
For a long time, my autonomous agent found credentials the same way many applications do. Why I replaced a flat environment file with scoped Vaultwarden access, short-lived agent sessions, and a verified audit trail that now reaches Graylog and Wazuh.
The Map and the Floor
After years of working, teaching, writing in this field, the pattern I see most in newcomers is not lack of ability. It is freezing...