microsoft / microsoft/azure-devops-python-api

PAT token security

未關閉
#488 1 則留言 1 個 reaction 已指派 0 人 在 GitHub 檢視

還沒有人認領這個 Issue。

主要語言
Python
星號
684
分支
218
平均合併
8 天 10 小時
30 天內合併 PR
1

描述

Isn't it generally a bad idea to include your PAT token in the file? Even if I am just putting it in for testing, seems ripe for accidentally checking it in to source control. What is the suggestion for a more secure method?

貢獻指南

這個儲存庫沒有索引到貢獻指南

從這裡開始

  1. 先讀完整個 Issue,再讀專案的貢獻指南。
  2. 在 Issue 下留言說明你要接手 —— 這能避免兩個人做同樣的事。
  3. Fork 儲存庫,在一個分支上完成修改。
  4. 送出 Pull Request,並在描述裡引用這個 Issue 編號。

研究方向

首先檢查 repository 的文件與範例,了解 PAT token 的設定方式。確定專案應推薦的安全方法,以取代將 token 嵌入檔案中,接著記錄該工作流程,並確保範例不會鼓勵提交 secrets。

由索引模型根據 Issue 內容生成。

評估

技術堆疊
azure, python
領域
documentation, security
Issue 類型
文件
難度
4/5
預估耗時
3-5 天
活躍度
停滯
描述清晰度
需要釐清
新手友好度
25/100

把新 issue 寄到你的電子郵件信箱

精選適合新手參與的 GitHub issue 摘要。