logoalt Hacker News

m4rtinklast Sunday at 12:19 PM1 replyview on HN

The idea is you first review PRs from external contributors before allowing the CI to run on them.


Replies

woodruffwlast Sunday at 10:34 PM

I understand the idea. The point was that it isn't good enough: humans are fallible, so you still want to provide a secure CI/CD environment for untrusted external contributors.