Azure / Azure/azure-sdk-tools

Test-Proxy needs to reset the commit on git asset protection push failure

Open
#10,070 0 comments 0 reactions 0 assignees View on GitHub
needs-triage
Dominant language
C#
Stars
135
Forks
260
Avg merge
3d 1h
Merged PRs (30d)
143

Description

Not resetting the commit means that when users fix the recording and push again, the parent commit with the secret is _still present_ and git asset protection will prevent the `test-proxy push`.

Contributor guide

Open the contributing guide

Research direction

Start at the test-proxy push flow and reproduce a git asset protection push failure using a recording that contains a secret. Trace what commit remains after the failure, then verify that retrying after fixing the recording no longer includes the parent commit with the secret.

Written by the indexing model from the issue text.

Assessment

Tech stack
csharp, git
Domain
security, tooling
Issue type
Bug
Difficulty
3/5
Estimated time
1-2 days
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.