adamziel / playground-docs-workflow

Experimenting with maintaining WordPress docs using WordPress Playground
https://adamziel.github.io/playground-docs-workflow/
11 stars 2 forks source link

Restrict the access given to the GitHub App #38

Open ironnysh opened 3 months ago

ironnysh commented 3 months ago

This project is mindblowing. I love it! 🥇

However, I feel like the GitHub authorization step is going to be a major barrier:

image
  1. It appears to be granting access to you, @adamziel :-)
  2. The scope (read and write all public and private repository data, and access to manage organization attributes and organization-owned resources including projects, invitations, team memberships and webhooks. This scope also grants the ability to manage projects owned by users.) is alarming.

Is it possible to use GitHub's fine-grained personal access tokens?

adamziel commented 3 months ago

Good point! @ironnysh :-) That was my temporary solution. We should have a fine-grained WP.org app. :wave: @dd32, who should I ask to get it set up?