Home
About Us
Products
Contact
Get Started
Loading...
Documentation
GHA Security
14
GHA-SEC001
Plaintext Secrets
GHA-SEC002
Untrusted Input in Shell Commands
GHA-SEC003
Minimally Scoped Credentials
GHA-SEC004
Unknown Actions
GHA-SEC005
Non-specific Version Tags
GHA-SEC006
Self-hosted Runners
GHA-SEC007
`pull_request_target` and External SHA
GHA-SEC008
Artifact Uploads with Sensitive Files
GHA-SEC009
Missing Checksum for Downloads
GHA-SEC010
Secrets in Global `env:`
GHA-SEC011
Auto-Approve Pull Requests
GHA-SEC012
`continue-on-error: true`
GHA-SEC013
Deprecated `set-output` Command
GHA-SEC014
Use of Legacy GCP Authentication