Yes, it is possible to inject secrets directly into a subprocess without writing them to disk via op run. Also see https://news.ycombinator.com/item?id=41482194 … we responded to the parent around the same time :D
Also using 1Password and I think it’s great. If possible, I would suggest to avoid plaintext secrets in files though. Instead, it is possible to store references to secrets in a dotenv file (example: .env.development):
DATABASE_URL=op://development/database/url
and use op run to inject the secrets into a subprocess instead of storing them in a file:
op run --env-file="./.env.development" -- cargo run
We are a self-funded, well financed family office combining a very customer-centric wealth management approach with state-of-the-art technology. Our mission is to make family office services accessible to a broader audience.
We are currently looking for Senior {Frontend,Backend,Fullstack} Engineers to help building high quality frontends optimized for ease of use, backend systems with a focus on correctness, and of course our overall infrastructure and automation for a great developer experience. Depending on the role, you'll find yourself building application specific APIs, jobs, streaming data integration, and business logic around financial indicators or interactive visualizations of financial datasets, complex form flows, and frontends for rich moderated content.
Our team and tech is fairly early stage: There is room for you to shape how things are being done, which technologies we employ for what, etc.. However we do already put a high emphasis on writing well structured, scalable and tested code. We anticipate the engineering team to grow to up to 10 people in 2021.
If you are interested, please contact me, Tom (Head of Engineering), directly at t.koenig at finvia dot fo.
I am using the same device and it's also a clear recommendation from my side. Another plus to add is the support: When I called the support because I had these vertical stripes showing up in the panel from time to time, they sent a replacement mainboard and a technician who replaced it at my place in about an hour. I was 0 days without the device which is quite valuable if you are using it professionally, I'd say... This sort of support does of course not only apply to this exact model but I think it is constrained to the T and X series.