Skip to content

Hardcoded Credentials #149

@Sicks3c

Description

@Sicks3c

Hey there

Looks like my scanner picked up your GH_TOKEN for the PR bot even though it was in base64
I recommend you revoke it and generate new one and store it in a local env

[https://github.com/mongoid/mongoid_search/blob/480349302907d5508f098a9ca3f529ddac6334fb/.github/workflows/danger.yml#L16]

Image

Cheers

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions