settings: do not include a default secret key
authorFrédéric Péters <fpeters@0d.be>
Sun, 29 Dec 2019 13:12:46 +0000 (14:12 +0100)
committerFrédéric Péters <fpeters@0d.be>
Sun, 29 Dec 2019 13:34:25 +0000 (14:34 +0100)
chloro/settings.py

index fa1b1bea8c237d8d1e085113edb12cdde4373008..b29168d472c7c64de6c720ac1c7ebe7052972609 100644 (file)
@@ -20,7 +20,7 @@ BASE_DIR = os.path.dirname(os.path.dirname(os.path.abspath(__file__)))
 # See https://docs.djangoproject.com/en/1.11/howto/deployment/checklist/
 
 # SECURITY WARNING: keep the secret key used in production secret!
 # See https://docs.djangoproject.com/en/1.11/howto/deployment/checklist/
 
 # SECURITY WARNING: keep the secret key used in production secret!
-SECRET_KEY = 'cv)5m&o$$hwhl-a79_vyhs#04mq_p*p-xvyvoau%(6wef_by!y'
+SECRET_KEY = ''
 
 # SECURITY WARNING: don't run with debug turned on in production!
 DEBUG = True
 
 # SECURITY WARNING: don't run with debug turned on in production!
 DEBUG = True
@@ -112,3 +112,5 @@ local_settings_file = os.environ.get(
 )
 if os.path.exists(local_settings_file):
     exec(open(local_settings_file).read())
 )
 if os.path.exists(local_settings_file):
     exec(open(local_settings_file).read())
+
+assert SECRET_KEY