Skip to content

draft - #917

Merged
tannerlinsley merged 9 commits into
mainfrom
followup-post
May 12, 2026
Merged

draft#917
tannerlinsley merged 9 commits into
mainfrom
followup-post

Conversation

@LadyBluenotes

Copy link
Copy Markdown
Member

No description provided.

Comment thread src/blog/incident-followup.md Outdated
Comment thread src/blog/incident-followup.md Outdated
Comment thread src/blog/incident-followup.md Outdated
Comment thread src/blog/incident-followup.md Outdated
Comment thread src/blog/incident-followup.md Outdated
Comment thread src/blog/incident-followup.md
Comment thread src/blog/incident-followup.md Outdated
Comment thread src/blog/incident-followup.md Outdated
Comment thread src/blog/incident-followup.md Outdated

@Sheraff Sheraff left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think this is good and straight to the point.

If i were a hater I would say that the "what we're working on next" doesn't feel like enough: it patches this type of security issues, but what are we doing for our broader security posture?

Comment thread src/blog/incident-followup.md Outdated
Comment thread src/blog/incident-followup.md Outdated
Comment thread src/blog/incident-followup.md Outdated
Comment thread src/blog/incident-followup.md Outdated
Co-authored-by: Flo <me@florianpellet.com>
Comment thread src/blog/incident-followup.md Outdated

@20jasper 20jasper left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think tonally everything is good and responsibility is well accepted. I think this has a bit too much overlap with the postmortem article linked up front. Consider a quick "this was a cache poisoning and permissions attack caused by this notorious GHA feature, read more on the root cause here"

@tannerlinsley
tannerlinsley merged commit 9d95ef7 into main May 12, 2026
5 checks passed
@tannerlinsley
tannerlinsley deleted the followup-post branch May 12, 2026 16:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

6 participants