Commit 1457cf5
committed
cascading-run (push): validate event's sender
While a `push` that we already verified came from the `main` branch kind
of implies that the person pushing that branch has write permissions,
let's just add the usual permission check, too. Security is a game of
layers.
Signed-off-by: Johannes Schindelin <johannes.schindelin@gmx.de>1 parent 5c35d7d commit 1457cf5
1 file changed
+3
-0
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
271 | 271 | | |
272 | 272 | | |
273 | 273 | | |
| 274 | + | |
274 | 275 | | |
275 | 276 | | |
276 | 277 | | |
277 | 278 | | |
278 | 279 | | |
279 | 280 | | |
280 | 281 | | |
| 282 | + | |
| 283 | + | |
281 | 284 | | |
282 | 285 | | |
283 | 286 | | |
| |||
0 commit comments