Granular Permissions for Repository Secrets and Variables
- 主要语言
- 没有语言数据
- 星标
- 8.9k
- 派生
- 1.8k
- PR 合并指标
- 30 天内没有已合并 PR
描述
### Value Prop
You can now assign permissions for managing repository secrets and variables without giving full write access to your repository. This makes it easy to control who can create, update, or delete sensitive credentials, so your team can collaborate securely while keeping important information protected.
### Expected Outcome
By separating secrets and variables management from general write access, organizations can better enforce least-privilege access and reduce the risk of accidental or unauthorized changes to sensitive data. This helps teams maintain strong security and compliance standards without disrupting their regular development workflows.
贡献指南
调研方向
Issue 中没有确定实现文件、测试或入口点。首先明确权限模型,以及受影响的 repository secrets 和 variables 工作流;完成的标准是用户可以独立于常规的 repository 写入权限管理这些资源。
由索引模型根据 Issue 内容生成。
评估
- 技术栈
- github
- 领域
- authorization, security
- Issue 类型
- 功能
- 难度
- 5/5
- 预计耗时
- 一周以上
- 活跃度
- 冷清
- 描述清晰度
- 需要澄清
- 新手友好度
- 25/100