←back to thread

297 points cyberbender | 3 comments | | HN request time: 0.238s | source
1. ryao ◴[] No.43528076[source]
I put CodeQL in use in OpenZFS PRs. This is not an issue for OpenZFS. None of our code is secret. :)
replies(2): >>43528995 #>>43529721 #
2. ◴[] No.43528995[source]
3. asmosoinio ◴[] No.43529721[source]
I don't think this is a good take: Even if your code is not secret, the attack could add anything to your code or release artifacts.

Luckily it was quickly remedied at least.