Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Community Contribution License Agreement
By creating this pull request, I grant the project maintainers an unlimited,
perpetual license to use, modify, and redistribute these contributions under any terms they
choose, including both the AGPLv3 and the Fossorial Commercial license terms. I
represent that I have the right to grant this license for all contributed content.
Description
Sorry for the delay on fixing this.
Yes on
pull_requestis just working when someone from the team ist creating the PR, otherwiese no secrets will be available.On
pull_request_targetsecrects are available. But this workflow will then run with code from the PR target (trusted code).So we have to merge in the new code with
checkout. To be save that no one creates a PR which is stealing the secrets i have added an environmentbuild-dev. This will bring up an approval for running the workflow.It is not super nice to have this approval step but otherwise it will be to risky.
Important
Be sure to first create the environment and select at least one reviewer before merging.
Fix #1625