Skip to main content
NEW: RSAC 2026 NHI Field Report. How Non-Human Identity became cybersecurity's central axis
Secrets

What is Secret Sprawl?

Also known as: 시크릿 스프롤 · 시크릿 확산 · 시크릿 산재 · 크리덴셜 확산 · Credential Sprawl · Secrets Sprawl

The condition where credentials, API keys, and tokens are scattered across code repositories, CI systems, environment variable stores, chat messages, wikis, and documents without a single inventory or ownership record. Rotating a single value becomes expensive because the team does not know how many copies exist. Recent incidents like the April 2026 Vercel exposure and the Bitwarden CLI npm compromise are textbook secret-sprawl outcomes.

Browse the full glossary

30 terms organized by category.