You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Filing this so I don't forget about it. Needs more thought.
The risk of a pull_request_target or similar is significantly diminished when permissions: {} or similarly constrained. We should consider emitting a "pedantic" or "auditor"-only finding in these cases.
Filing this so I don't forget about it. Needs more thought.
The risk of a
pull_request_target
or similar is significantly diminished whenpermissions: {}
or similarly constrained. We should consider emitting a "pedantic" or "auditor"-only finding in these cases.h/t @MikeMcQuaid for raising 🙂
The text was updated successfully, but these errors were encountered: