Alex Pavlenko
Results
11
comments of
Alex Pavlenko
You may want to put GitHub fingerprints somewhere in Actions variables/secrets and use those rather then keyscanning. With ssh-keyscan you are effectively open to MITM attack if somebody happens to...