From 657c062c3ff99c3af353bb91e896e56f7adf4b63 Mon Sep 17 00:00:00 2001 From: Ishaan Jaffer Date: Mon, 22 Jun 2026 21:05:16 -0700 Subject: [PATCH] rust(mistral): document that secret-manager resolution happens on the Python side --- .../crates/providers/src/mistral/ocr/transformation.rs | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/litellm-rust/crates/providers/src/mistral/ocr/transformation.rs b/litellm-rust/crates/providers/src/mistral/ocr/transformation.rs index 1acf523ccad..fd691177783 100644 --- a/litellm-rust/crates/providers/src/mistral/ocr/transformation.rs +++ b/litellm-rust/crates/providers/src/mistral/ocr/transformation.rs @@ -48,6 +48,10 @@ pub fn complete_url(api_base: Option<&str>) -> String { /// /// Blank/whitespace values are treated as absent. Returns `CoreError::Auth` /// when no usable key is available. +/// +/// Note: the env fallback only reads the process environment. Secret-manager +/// backends (AWS/Azure/GCP/Vault) are resolved on the Python side and passed in +/// via `api_key`; this fallback is a last resort for direct/standalone use. pub fn resolve_api_key( api_key: Option<&str>, env_lookup: &dyn Fn(&str) -> Option,