Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Permission handling for public ex-remit setup #81

Open
michitux opened this issue Feb 6, 2025 · 0 comments
Open

Permission handling for public ex-remit setup #81

michitux opened this issue Feb 6, 2025 · 0 comments

Comments

@michitux
Copy link

michitux commented Feb 6, 2025

As mentioned in #80, we've set up ex-remit for the use in the open source project XWiki. We don't really care about keeping ex-remit private - in fact, we would want that contributors can see comments that we left for them, and they should be able to mark comments for them as resolved so they can easily find unresolved ones. On the other hand, it might not be desirable that any GitHub user can log in and mark a commit as reviewed (or change settings in ex-remit). I've seen that in 0cf55e1 a feature to limit review access has been added. If we used that (not sure how to configure that), would you consider it safe to publish the auth key or is this against the security concept of ex-remit? If this currently isn't advised, what would need to be changed to support a public ex-remit instance?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant