commandlineparser / commandlineparser/commandline
Security: Store API Keys in Secrets?
未關閉
- 主要語言
- C#
- 星號
- 4.8k
- 分支
- 478
- PR 合併指標
- 30 天內沒有已合併 PR
描述
Hey fellas,
I just discovered your repository and I really think your implementation is beautiful.
But i just wondered if the API keys in [appveyor.uml](https://github.com/commandlineparser/commandline/blob/master/appveyor.yml) (Line 49,58) shouldn't be stored in secrets ?
貢獻指南
這個儲存庫沒有索引到貢獻指南
研究方向
檢查第 49 行和第 58 行的 appveyor.yml,然後檢視此 repository 的 AppVeyor 設定如何處理憑證。完成的標準是 API 金鑰不再直接儲存在設定中,且 CI 設定仍包含必要的 secret 參照;issue 中沒有提及任何測試檔案。
由索引模型根據 Issue 內容生成。
評估
- 技術堆疊
- yaml
- 領域
- ci-cd, security
- Issue 類型
- 缺陷
- 難度
- 2/5
- 預估耗時
- 1-3 小時
- 活躍度
- 停滯
- 描述清晰度
- 描述清楚
- 新手友好度
- 35/100