Skip to content
This repository has been archived by the owner on Dec 20, 2020. It is now read-only.

Revoke private key or add comment indicating the reason it has been committed #23

Open
johana-star opened this issue Dec 18, 2017 · 0 comments

Comments

@johana-star
Copy link

It is a security best practice to never commit a secret, especially within a publicly viewable repository. However, the following file has been committed to your repo:

  • supply-chain-office-integration/cert/server.key

To resolve this issue, either revoke this key and remove it from the repo, OR add a comment indicating both why it is necessary to have this private key and why it is not a security risk.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant