Skip to content

Hardcoded Credentials #149

Open
Open
@Sicks3c

Description

@Sicks3c

Hey there

Looks like my scanner picked up your GH_TOKEN for the PR bot even though it was in base64
I recommend you revoke it and generate new one and store it in a local env

[https://github.com/mongoid/mongoid_search/blob/480349302907d5508f098a9ca3f529ddac6334fb/.github/workflows/danger.yml#L16]

Image

Cheers

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions