ministryofjustice / operations-engineering

This repository is home to the Operations Engineering's tools and utilities for managing, monitoring, and optimising software development processes at the Ministry of Justice. • This repository is defined and managed in Terraform
https://user-guide.operations-engineering.service.justice.gov.uk/
MIT License
14 stars 5 forks source link

🔍 Rationalising GitHub Personal Access Tokens for MOJ-Operations-Engineering-Bot #4007

Open jasonBirchall opened 9 months ago

jasonBirchall commented 9 months ago

User Need

As a member of the operations engineering team, I want to organise and secure the GitHub personal access tokens in the moj-operations-engineering-bot account, so that we can reduce risks, improve clarity, and align with best practices in token management.

Value

Properly managing these tokens will significantly reduce security risks by limiting their scope and improving their traceability. It will also streamline our processes by creating a clear and efficient method for future token creation and management.

Functional Requirements:

Non-Functional Requirements:

Acceptance Criteria:

Notes:

tamsinforbes commented 3 months ago

moj-operations-engineering-bot

tamsinforbes commented 3 months ago

Note on what tokens do what

tamsinforbes commented 3 months ago

These tickets are done for this epic Investigate moj-operations-engineering-bot tokens

Agree PAT Standards for moj-operations-engineering-bot account