google-gemini / generative-ai-swift

The official Swift library for the Google Gemini API
https://ai.google.dev/gemini-api/docs/get-started/tutorial?lang=swift
Apache License 2.0
909 stars 144 forks source link

Security Policy violation Outside Collaborators #157

Closed google-allstar-prod[bot] closed 5 months ago

google-allstar-prod[bot] commented 5 months ago

This issue was automatically created by Allstar.

Security Policy Violation Found 3 outside collaborators with admin access. This policy requires users with this access to be members of the organisation. That way you can easily audit who has access to your repo, and if an account is compromised it can quickly be denied access to organization resources. To fix this you should either remove the user from repository-based access, or add them to the organization.

OR

If you don't see the Settings tab you probably don't have administrative access. Reach out to the administrators of the organisation to fix this issue.

OR


:warning: There is an updated version of this policy result! Click here to see the latest update


This issue will auto resolve when the policy is in compliance.

Issue created by Allstar. See https://github.com/ossf/allstar/ for more information. For questions specific to the repository, please contact the owner or maintainer.

paulb777 commented 5 months ago

@random-forests Please add the generative-ai-swift repo members to the google-gemini organization. cc: @ryanwilson

google-allstar-prod[bot] commented 5 months ago

The policy result has been updated.


Found 2 outside collaborators with admin access. This policy requires users with this access to be members of the organisation. That way you can easily audit who has access to your repo, and if an account is compromised it can quickly be denied access to organization resources. To fix this you should either remove the user from repository-based access, or add them to the organization.

OR

If you don't see the Settings tab you probably don't have administrative access. Reach out to the administrators of the organisation to fix this issue.

OR

google-allstar-prod[bot] commented 5 months ago

Policy is now in compliance. Closing issue.