MarkBind / markbind

MarkBind is a tool for generating content-heavy websites from source files in Markdown format
https://markbind.org/
MIT License
134 stars 123 forks source link

Add documentation regarding security practices for github actions #2515

Closed yucheng11122017 closed 2 months ago

yucheng11122017 commented 2 months ago

Please confirm that you have searched existing issues in the repo

Yes, I have searched the existing issues

Any related issues?

2488

What is the area that this feature belongs to?

Security

Is your feature request related to a problem? Please describe.

When writing GitHub action workflows, developers might miss out on security conventions.

Describe the solution you'd like

Since this is already researched by @KevinEyo1 in #2488 and implemented in #2510, let's document it in our dev guide so that future developers can follow these conventions.

Describe alternatives you've considered

No response

Additional context

No response