mirror of
https://github.com/github/codeql.git
synced 2026-01-09 20:50:21 +01:00
Merge branch 'master' of https://github.com/github/codeql-actions
This commit is contained in:
@@ -1,6 +1,6 @@
|
||||
/**
|
||||
* @name Checkout of untrusted code in trusted context
|
||||
* @description Priveleged workflows have read/write access to the base repository and access to secrets.
|
||||
* @description Privileged workflows have read/write access to the base repository and access to secrets.
|
||||
* By explicitly checking out and running the build script from a fork the untrusted code is running in an environment
|
||||
* that is able to push to the base repository and to access secrets.
|
||||
* @kind path-problem
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
/**
|
||||
* @name Checkout of untrusted code in trusted context
|
||||
* @description Priveleged workflows have read/write access to the base repository and access to secrets.
|
||||
* @description Privileged workflows have read/write access to the base repository and access to secrets.
|
||||
* By explicitly checking out and running the build script from a fork the untrusted code is running in an environment
|
||||
* that is able to push to the base repository and to access secrets.
|
||||
* @kind problem
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
/**
|
||||
* @name Checkout of untrusted code in trusted context
|
||||
* @description Priveleged workflows have read/write access to the base repository and access to secrets.
|
||||
* @description Privileged workflows have read/write access to the base repository and access to secrets.
|
||||
* By explicitly checking out and running the build script from a fork the untrusted code is running in an environment
|
||||
* that is able to push to the base repository and to access secrets.
|
||||
* @kind problem
|
||||
|
||||
Reference in New Issue
Block a user