Skip to content

Verify github/gitea payloads in trigger api #76

@AhmedHanafy725

Description

@AhmedHanafy725

current trigger api accepts any request with the needed info without knowing who send this payload.
while creating the webhook in the repo, we should add a secret to the webhook. this secret github/gitea will use it as a signature for the payload and can be verified in the trigger api.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions