Skip to content

Automate secrets detection in workflows and add documentation for secret management #33

@S4tvara

Description

@S4tvara

The repository asks contributors not to commit secrets/tokens, but currently lacks automation for checking this. Please implement:

  • GitHub Actions or pre-commit hook to detect hardcoded secrets or tokens in workflows and source code
  • Documentation on secret-management best practices
  • Guidelines on rotating secrets and handling accidental commits

This will reduce the risk of credential leaks.

Metadata

Metadata

Assignees

No one assigned

    Labels

    area/actionsGitHub Actions codebugSomething isn't workingdocumentationImprovements or additions to documentation

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions