Pre-Production environments use same settings as production as default
Open
enhancement
pre-production
- Dominant language
- No language data
- Stars
- 346
- Forks
- 67
- PR merge metrics
- No merged PRs in 30d
Description
By default, pre-production environment is automatically created when a pull request is submitted.
However, it uses same settings as production like connection string to DB.
It is possible to attack the production environment from the pre-production environment by sending a pull request containing a malicious API.
Contributor guide
No contributing guide indexed for this repository
Assessment
This issue has not been assessed yet.