Skip to content

Latest commit

 

History

History
14 lines (9 loc) · 442 Bytes

hardcoded-container-credentials.md

File metadata and controls

14 lines (9 loc) · 442 Bytes

hardcoded-container-credentials

Audit ID Type Examples
hardcoded-container-credentials Workflow hardcoded-credentials.yml

What

GitHub Actions allows Docker credentials (usernames and passwords) to be hardcoded in various places within workflows.

Why

Hardcoding credentials is bad.