Somehow the updating of secrets in ASM never worked on my cluster due to missing permissions, Now the permissions were fixed and the secrets are botched.
The secrets now get an extra key, like this
oauth: {"oauth": "ghp_kkkke"}
while the expectation is that the secret should be like