<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Credentials on CuraDevOps</title><link>https://curadevops.metacog.co.kr/tags/credentials/</link><description>Recent content in Credentials on CuraDevOps</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Wed, 26 Aug 2026 11:21:00 +0000</lastBuildDate><atom:link href="https://curadevops.metacog.co.kr/tags/credentials/index.xml" rel="self" type="application/rss+xml"/><item><title>IAM Roles Anywhere adds native Java SDK v2 plugin for credential resolution</title><link>https://curadevops.metacog.co.kr/insights/2026-08-26-iam-roles-anywhere-now-provides-a-java-plugin-for-the-aws-sd/</link><pubDate>Wed, 26 Aug 2026 11:21:00 +0000</pubDate><guid>https://curadevops.metacog.co.kr/insights/2026-08-26-iam-roles-anywhere-now-provides-a-java-plugin-for-the-aws-sd/</guid><description>&lt;ul>
&lt;li>&lt;strong>Platform/SRE — Learn:&lt;/strong> Simplifies how Java workloads outside AWS obtain temporary credentials via Roles Anywhere without a sidecar process, worth knowing when evaluating hybrid or on-prem workload auth patterns.&lt;/li>
&lt;li>&lt;strong>CI/CD — Learn:&lt;/strong> Relevant if build pipelines run Java workloads outside AWS that need AWS credentials; the plugin could replace credential_process workarounds, but no deadline or deprecation drives urgency.&lt;/li>
&lt;li>&lt;strong>Leader — Skip&lt;/strong>&lt;/li>
&lt;/ul></description></item><item><title>GitHub adds token-type credential revocation for incident response</title><link>https://curadevops.metacog.co.kr/insights/2026-08-19-credential-revocation-and-deauthorization-by-token-type/</link><pubDate>Wed, 19 Aug 2026 11:17:39 +0000</pubDate><guid>https://curadevops.metacog.co.kr/insights/2026-08-19-credential-revocation-and-deauthorization-by-token-type/</guid><description>&lt;ul>
&lt;li>&lt;strong>Platform/SRE — Learn:&lt;/strong> Useful new GitHub admin capability for scoping credential revocation by token type during incidents, but no infra dependency or deadline — worth knowing for incident runbooks.&lt;/li>
&lt;li>&lt;strong>CI/CD — Plan:&lt;/strong> Scope incident response playbooks to leverage token-type revocation for PATs, OAuth tokens, and GitHub App tokens; audit current credential hygiene and update runbooks to use this targeted revocation before the next supply-chain incident.&lt;/li>
&lt;li>&lt;strong>Leader — Skip&lt;/strong>&lt;/li>
&lt;/ul></description></item></channel></rss>