github / github/roadmap

Granular Permissions for Repository Secrets and Variables

未关闭
#1,270 0 条评论 0 个 reaction 已指派 0 人 在 GitHub 查看
Enterprise Free Team
主要语言
没有语言数据
星标
8.9k
派生
1.8k
PR 合并指标
30 天内没有已合并 PR

描述

### Value Prop

You can now assign permissions for managing repository secrets and variables without giving full write access to your repository. This makes it easy to control who can create, update, or delete sensitive credentials, so your team can collaborate securely while keeping important information protected.

### Expected Outcome

By separating secrets and variables management from general write access, organizations can better enforce least-privilege access and reduce the risk of accidental or unauthorized changes to sensitive data. This helps teams maintain strong security and compliance standards without disrupting their regular development workflows.

贡献指南

打开贡献指南

调研方向

Issue 中没有确定实现文件、测试或入口点。首先明确权限模型,以及受影响的 repository secrets 和 variables 工作流;完成的标准是用户可以独立于常规的 repository 写入权限管理这些资源。

由索引模型根据 Issue 内容生成。

评估

技术栈
github
领域
authorization, security
Issue 类型
功能
难度
5/5
预计耗时
一周以上
活跃度
冷清
描述清晰度
需要澄清
新手友好度
25/100

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。