commandlineparser / commandlineparser/commandline

Security: Store API Keys in Secrets?

未關閉
#723 1 則留言 0 個 reaction 已指派 0 人 在 GitHub 檢視
主要語言
C#
星號
4.8k
分支
478
PR 合併指標
30 天內沒有已合併 PR

描述

Hey fellas,

I just discovered your repository and I really think your implementation is beautiful.

But i just wondered if the API keys in [appveyor.uml](https://github.com/commandlineparser/commandline/blob/master/appveyor.yml) (Line 49,58) shouldn't be stored in secrets ?

貢獻指南

這個儲存庫沒有索引到貢獻指南

研究方向

檢查第 49 行和第 58 行的 appveyor.yml,然後檢視此 repository 的 AppVeyor 設定如何處理憑證。完成的標準是 API 金鑰不再直接儲存在設定中,且 CI 設定仍包含必要的 secret 參照;issue 中沒有提及任何測試檔案。

由索引模型根據 Issue 內容生成。

評估

技術堆疊
yaml
領域
ci-cd, security
Issue 類型
缺陷
難度
2/5
預估耗時
1-3 小時
活躍度
停滯
描述清晰度
描述清楚
新手友好度
35/100

把新 issue 寄到你的電子郵件信箱

精選適合新手參與的 GitHub issue 摘要。