security(binjovi): scope repository controller token #19
Loading…
Reference in a new issue
No description provided.
Delete branch "fix/binjovi-repository-scoped-operator"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Replace Binjovi component site-admin credentials with a rotating write:repository token owned by a separate non-site-admin repository operator. Keep the Binjovi runtime identity at write access.