Description
load_config() in config.py does not validate the configuration file. Unknown keys are silently ignored, and typos (e.g. pasword: instead of password:) are not detected.
Proposed Solution
- Warn on unknown top-level keys
- Validate that
vault_file and keys_file are strings
- Validate
password sub-keys (env, file, cmd)
- Provide clear error message for invalid config
Files
src/vaultctl/config.py (function load_config)
Priority
P2
Description
load_config()inconfig.pydoes not validate the configuration file. Unknown keys are silently ignored, and typos (e.g.pasword:instead ofpassword:) are not detected.Proposed Solution
vault_fileandkeys_fileare stringspasswordsub-keys (env,file,cmd)Files
src/vaultctl/config.py(functionload_config)Priority
P2