top | item 44954651

(no title)

curuinor | 6 months ago

hey, this is Howon from CodeRabbit. We use a cloud-provider-provided key vault for application secrets, including GH private key.

discuss

order

musicnarcoman|6 months ago

So the CodeRabbit application with access to application secrets still runs in the same virtual machine as untrusted code from the outside?

megamorf|6 months ago

Howon, you can stop posting that canned response. It's not helping the discussion in any way and matches the lack of detail the other commenters have pointed out.