fix(ci): prevent code injection in release-otdfctl workflow#3308
fix(ci): prevent code injection in release-otdfctl workflow#3308alkalescent merged 1 commit intoDSPX-2655-migrate-otdfctlfrom
Conversation
|
Note Gemini is unable to generate a summary for this pull request due to the file types involved not being currently supported. |
|
Important Review skippedAuto reviews are disabled on base/target branches other than the default branch. Please check the settings in the CodeRabbit UI or the ⚙️ Run configurationConfiguration used: Repository UI Review profile: ASSERTIVE Plan: Pro Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
✨ Finishing Touches🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
Benchmark results, click to expandBenchmark authorization.GetDecisions Results:
Benchmark authorization.v2.GetMultiResourceDecision Results:
Benchmark Statistics
Bulk Benchmark Results
TDF3 Benchmark Results:
|
|
9bba58a
into
DSPX-2655-migrate-otdfctl
Proposed Changes
release-otdfctl.yamlby passinggithub.event.release.tag_namethroughenv:variables instead of direct template expansion inrun:blocks.Checklist
Testing Instructions
No functional change — the workflow behaves identically, but tag name values are now injected as environment variables rather than interpolated into shell scripts.