Glossary

Secrets Security Glossary

Plain-language definitions of the terms that matter in secrets detection, credential security, and non-human identity — each written to be genuinely useful, not just keyword bait.

Non-Human Identity (NHI)

A digital identity assigned to software — API keys, tokens, service accounts — rather than a person.

Secret Sprawl

The uncontrolled spread of credentials across code, chat, wikis, config files, and cloud.

Secret Scanning

The automated detection of exposed credentials in source code, git history, and beyond.

Push Protection

A preventive control that blocks secrets from entering a repository at git push time.

Blast Radius

The full extent of damage one compromised credential or component can cause.

Harvest Now, Decrypt Later (HNDL)

Stealing encrypted data today to decrypt it once quantum computers arrive.

Honeytoken

A decoy credential planted as a tripwire — when used, you know you've been breached.

See these concepts in action

Vooda AI detects, verifies, and maps the blast radius of exposed secrets across code and the 30+ places they hide outside it.

Get a Demo →