Bash history security
Bash History Security: 5 Ways to Keep Passwords and API Keys Out of Plain Text
You've Done It: Pasted a Password, Hit Enter, Immediately Panicked You paste a curl command with an API key embedded. You hit Enter. The command works. Then you realize: where did that string just land? Bash saved it. To ~/.bash_history. Which is readable by anyone with access