I personally find that users have to resolve to different means to store and populate non-secrets. The most common ways are probably dotenv or direnv. Which is fine however I think it would be more convenient if the ejsonkms file also allow users to store non-secrets.