{"id":"keyvault-certificates-as-certificate-objects-not-secrets","text":"Certificates should be stored as Key Vault certificate objects (not secrets) to enable autorotation","truth_value":"IN","source":"entries/2026/03/11/keyvault-best-practices.md","source_url":"","source_hash":"9728058a03e5fdc2","justifications":[],"dependents":[],"metadata":{},"explanation":{"steps":[{"node":"keyvault-certificates-as-certificate-objects-not-secrets","truth_value":"IN","reason":"premise"}]}}