jupyter / jupyter/security

Review security of GitHub repository commiters & 2 Factor authentication.

Open
#71 4 comments 0 reactions 0 assignees View on GitHub
Dominant language
Jupyter Notebook
Stars
27
Forks
12
Avg merge
3d 5h
Merged PRs (30d)
3

Description

Cf thread on the [Jupyter Mailing list](https://groups.google.com/forum/?utm_medium=email&utm_source=footer#!topic/jupyter/Kxz1JcUzXNM).

It would be a good idea to review:
- Who has commit rights & where
- If they have rights on sensible area try to push for them to enable 2FA.
- Investigate the possibility at making 2FA mandatory through GitHub options.

At the same time, we could likely see if we can clean-up who is in what team, and if developers are still active.

Once this is done, we can also review who has access to non-github resources at the same time:
- readthedocs,
- PyPI
- youtube...

And try to uniformise that; as well as investigate securing the releases processes.

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.