ossf / great-mfa-project

The Great Multi-Factor Authentication (MFA) Distribution Project of the Open Source Security Foundation (OpenSSF). We work to distribute hardware MFA tokens to critical open source software (OSS) projects.
Other
53 stars 14 forks source link

Add account ids of notifiers; fixes #49 #51

Closed david-a-wheeler closed 2 years ago

david-a-wheeler commented 2 years ago

GitHub @balloob reported that "Home Assistant received this issue" home-assistant/core#61455 but wasn't sure if it was legit. We listed notfier names but @balloob correctly noted that it's easy to set names on another account.

This commit adds GitHub (and at one GitLab) account names, where I know them, to make it easier for many projects to confirm if a given notification really is a message from this project.

Signed-off-by: David A. Wheeler dwheeler@dwheeler.com

david-a-wheeler commented 2 years ago

@SecurityCRob @xcorail @jnaulty - I think this helps. I didn't have GitHub accounts for a few, I suggest we merge this & then add the missing data separately.