C0: review compensating control trusted-ci-only
Verified Forgejo runner is registered only to forge.ops.eblu.me and the forge has registration disabled, so no untrusted users can trigger privileged CI. Tightened notes to reflect the closed-forge mechanism (not a per-repo allow-list). Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
This commit is contained in:
parent
4aa0872949
commit
f84f5f02b3
2 changed files with 11 additions and 3 deletions
1
docs/changelog.d/+review-cc-trusted-ci-only.misc.md
Normal file
1
docs/changelog.d/+review-cc-trusted-ci-only.misc.md
Normal file
|
|
@ -0,0 +1 @@
|
|||
Reviewed compensating control `trusted-ci-only`: Forgejo runner is registered only to the private forge, which has registration disabled — no untrusted users can create repos or trigger privileged CI. Tightened the notes to reflect that the closed-forge property (not a per-repo allow-list) is what actually mitigates the risk.
|
||||
Loading…
Add table
Add a link
Reference in a new issue