Stop Putting Secrets in process.env: Encrypt Env Vars with AWS KMSAfter a CVSS 10.0 RCE (CVE-2025-66478), we stopped trusting process.env. Here’s what I built insteadFeb 21, 2026·10 min read·10