github / github/github-ospo

Automation to enforce repository permissions are by github team only and not individuals

オープン
#86 コメント 2 件 リアクション 0 件 担当者 0 名 GitHub で見る
enhancement new-action
主要言語
言語のデータがありません
スター
749
フォーク
72
PR マージ指標
30日以内にマージされた PR はありません

説明

### Is your feature request related to a problem?

To ensure that permissions are easier to maintain and keep updated, its a best practice to give permission to a GitHub team and then instead of removing them from a large number of repos, you can just remove them from the team. Well maintained permissions improves security posture.

The task here would be to create a/utilize an existing GitHub action or App to accomplish this.

コントリビューションガイド

コントリビューションガイドを開く

調査の方向性

ファイルやテストは特定されていません。まず、チーム専用のリポジトリ権限を適用するために GitHub Action と GitHub App を比較し、次に既存の個別権限をどのように扱うか、どのリポジトリを対象範囲とするかを定義します。選択した自動化が違反を強制的に防止するか報告し、その想定される動作が文書化されていれば完了です。

索引モデルが issue の本文から書いたものです。

評価

技術スタック
github, github-actions
領域
devops, security
issue の種類
機能追加
難易度
5/5
見積もり時間
1週間以上
活発さ
停滞
明瞭さ
おおむね明確
初心者へのやさしさ
35/100

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。