Any good cross-platform and easy ways to share secrets without using environment variables?
That being said, I still use env vars and don't plan on stopping. I just haven't (yet?) seen any exploits or threat models relating to it that would keep me up at night.
I also use env vars.
https://systemd.io/CREDENTIALS/
https://kubernetes.io/docs/concepts/configuration/secret/#us...
(Systemd also has more complex modes that are safer than files. And the Linux kernel has a concept of keyrings that might be even better.)