CircleCI Ideas

Support for securing circle.yml file

Just like Bitrise, if we can add the circleci.yml file from the dashboard instead of reading it from the source code. With the current practice a malicious developer can easily create a new circleci.yml file and run the deployment script!!

PS: There is no category for Security!

  • Avatar32.5fb70cce7410889e661286fd7f1897de Guest
  • Sep 7 2018
  • New
  • Attach files