Protecting test assets by using secrets
As a project member with the Owner or Tester role, you can add secrets to the security group in the project. You can grant or restrict access to the secrets that you added to the security group in the project.
Members with access to a secret security group can access, edit, or delete the secrets in Test Hub and can view secrets, edit secrets, or delete secrets.
Members are granted Read access to the security group at the role level, while Read and Write access can be provided to specific members.
Promoted test variables from server test assets can be mapped to secret-backed values by using security groups and secret entries. This mapping helps you reuse secure values across environments without embedding credentials directly in test steps.
Members in the project with the Owner or Tester role and with access to the secrets can use the secrets in tests at runtime.
- Create a security group. See Creating a security group.
- Add secrets in the security group. See Creating a secret in a security group.
- Grant access to project members or member roles, who can access the secrets. See Granting access to members or member roles.