logoalt Hacker News

leoooodiasyesterday at 3:12 PM0 repliesview on HN

Workload identity. Whatever is using an API key could instead be given an identity, and narrow privileges assigned to that identity. API keys tend to be overscoped/overprivileged.