A Kubernetes Secret can look correct while running pods still hold different environments. This case shows why CSI sync timing and per-pod verification matter.