Skip to content
Discussion options

You must be logged in to vote

I'd like to choose something as the "answer" but there are lots of pieces, so here is the rollup:

  • If you track something that exposes secrets, and sync that to a remote origin, and then on to other machines, then unwinding that is non-trivial. The workflow, with caveats, is documented via #13175

  • If you can invalidate what you exposed, then you can enable encryption for the affected file without needing to clean it from git, thanks to --allow-plaintext-history in #13175

  • If you need to clean git, then it might be easier to start over with a new repo, if it's okay to lose the historical record. Follow these steps but beware that you need to move .config/mise/config.toml aside on machin…

Replies: 1 comment 10 replies

Comment options

You must be logged in to vote
10 replies
@jdx
Comment options

jdx Sep 14, 2026
Maintainer

@jdx
Comment options

jdx Sep 14, 2026
Maintainer

@agriffis
Comment options

@agriffis
Comment options

Answer selected by agriffis
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants