
Season 2 · Episode 1474
The End of API Keys: Securing Non-Human Identity
Stop leaving your digital keys under the mat. Learn how workload identity federation is replacing the dangerous "secret management grind."
My Weird Prompts · Daniel Rosehill
March 23, 202624m 8s
Audio is streamed directly from the publisher (dts.podtrac.com) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.
Show Notes
In this episode, we tackle the "Secret Zero" paradox: the security nightmare of static API keys in an automated world. With AI assistants doubling the rate of credential leaks and malware targeting developer environments, the old way of managing secrets is broken. We explore the shift toward Non-Human Identity (NHI) and how frameworks like SPIFFE and SPIRE allow machines to prove who they are without a single hardcoded password. Whether you're a developer using AI tools or a security engineer, this deep dive into workload identity federation is essential for modern architecture.