for safer handling of env variables: * Store secrets in AWS Secrets Manager * Modify the Terraform code to retrieve secrets from there instead of tfvars