Skip to content

Can the ability to issue Dependabot commands be delegated? #1883

Closed Answered by Byron
EliahKagan asked this question in Q&A
Discussion options

You must be logged in to vote

I'd be happy to just provide blanket write access to keep it simple. main is protected and bypasses are only allowed for admins, so I don't think there would be a way to have anything 'snuck' in, in case of compromise for example. So any kind of exploit would be temporary at best, I'd sleep well.
Given your stance on security, I think I am the liability here 😅.

Replies: 1 comment 8 replies

Comment options

You must be logged in to vote
8 replies
@Byron
Comment options

@EliahKagan
Comment options

EliahKagan Mar 15, 2025
Collaborator Author

@EliahKagan
Comment options

EliahKagan Mar 17, 2025
Collaborator Author

@EliahKagan
Comment options

EliahKagan Mar 18, 2025
Collaborator Author

@Byron
Comment options

Answer selected by EliahKagan
# for free to join this conversation on GitHub. Already have an account? # to comment
Category
Q&A
Labels
None yet
2 participants