https://mise.jdx.dev/configuration.html
the same author has a separate but related project called fnox which focuses on secrets management and integrates with mise:
But we use 1Password for secrets and I have the need to mix and match environment profiles. So I built:
Whatever is truly local (not necessarily secrets ) should go in mise.local.toml and not be version controlled.
You also have MISE_ENV if you want to manage completely different environments.