AI Briefing
KO

Support for masking sensitive environment variable values in build logs

·2026.07.09 09:00

Key point

Vercel has introduced a masking feature to prevent sensitive environment variable values from being exposed in build logs.

Details

To strengthen security, Vercel has updated its system so that for environment variables set to Sensitive with values of 32 characters or more, the value is displayed as <REDACTED> in build logs.

In the build log view, users are notified that masking has occurred, providing visibility into why the output was hidden without exposing the actual value.

When an environment variable is masked, the Activity Log records the variable's key, project name, and deployment information, but the actual value is never logged. Additionally, some system environment variables selected for deployment security are also included as masking targets.

This summary was generated automatically by AI. Check the original for the author's claims and context. Copyright belongs to the original author.

Our guide explains how the AI works. Report summary errors, attribution issues, or removal requests via Contact.