argoproj / argoproj/argo-workflows
Workflow parameter sanitisation
Open
area/controller
area/templating
type/security
- Dominant language
- Go
- Stars
- 17k
- Forks
- 3.7k
- Avg merge
- 1d 15h
- Merged PRs (30d)
- 138
Description
# Summary
Prevent users from injecting or abuse parameters (e.g. by embedding templates).
# Use Cases
---
**Message from the maintainers**:
Love this enhancement proposal? Give it a 👍. We prioritise the proposals with the most 👍.
Contributor guide
Research direction
No files, tests, or entry points are named. Start by tracing how workflow parameters are parsed and substituted, then clarify the intended sanitisation rules and supported use cases with maintainers. Done means the abuse cases are explicitly defined and covered by an agreed implementation and tests.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- go, kubernetes
- Domain
- backend, security
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 20/100