• Rusty
    link
    fedilink
    English
    arrow-up
    1
    ·
    2 hours ago

    I think it’s a senior developer mistake. Even at midsized company developers should not have a direct access to production environment.

    • Scrubbles@poptalk.scrubbles.tech
      link
      fedilink
      English
      arrow-up
      1
      ·
      31 minutes ago

      Email is kind of hard. There’s usually only one API key to the email client, and there’s no real safe way to call it. Personally over the years my approach is to have an internal library that reads what environment it is in, and then if it doesn’t explicitly tell that it’s in prod, it reroutes everything to safe email addresses.