minder
minder copied to clipboard
Implement security checks on the workflow that built the artifact (list of actions, has permissions etc)
Overview:
I want the workflow that built my artifact:
- to use only a set of actions that I have allowed to be used
- to have their permissions explicitly set and fit within my boundary permissions
@puerco is interested in this, but I'm not sure if we have a feature lined up to support it.
Rado wants to keep this open.