evanbaldonado / github-pages-jekyll-password-protection

Automatically password protect (with encryption) certain pages on GitHub Pages/Jekyll sites using PageCrypt.
https://evanbaldonado.github.io/github-pages-jekyll-password-protection/
GNU Affero General Public License v3.0
13 stars 4 forks source link

Security In Mind #3

Open sec-fortress opened 3 months ago

sec-fortress commented 3 months ago

This currently means anybody with access to your major github repo can see the password and can bypass those protected pages easily, are there any other workarounds

tbrazel commented 1 month ago

It should work to store the password as a secret