Skip to content

chore: harden Github Actions workflows - #3559

Draft
Florence-Njeri wants to merge 8 commits into
asyncapi:masterfrom
Florence-Njeri:hardening-GA
Draft

chore: harden Github Actions workflows#3559
Florence-Njeri wants to merge 8 commits into
asyncapi:masterfrom
Florence-Njeri:hardening-GA

refactor arbitrary executable code

5aa8bfd
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / SonarCloud failed May 27, 2026 in 6s

4 new alerts including 4 high severity security vulnerabilities

New alerts in code changed by this pull request

Security Alerts:

  • 4 high

See annotations below for details.

View all branch alerts.

Annotations

Check failure on line 21 in .github/workflows/ambassador_management.yml

See this annotation in the file changed.

Code scanning / SonarCloud

Forked repository code should not be checked out in privileged workflow contexts High

Make sure that no untrusted code is executed from a fork. See more on SonarQube Cloud

Check failure on line 28 in .github/workflows/ambassador_management.yml

See this annotation in the file changed.

Code scanning / SonarCloud

Forked repository code should not be checked out in privileged workflow contexts High

Make sure that no untrusted code is executed from a fork. See more on SonarQube Cloud

Check failure on line 19 in .github/workflows/maintainer_management.yml

See this annotation in the file changed.

Code scanning / SonarCloud

Forked repository code should not be checked out in privileged workflow contexts High

Make sure that no untrusted code is executed from a fork. See more on SonarQube Cloud

Check failure on line 27 in .github/workflows/maintainer_management.yml

See this annotation in the file changed.

Code scanning / SonarCloud

Forked repository code should not be checked out in privileged workflow contexts High

Make sure that no untrusted code is executed from a fork. See more on SonarQube Cloud