jenne pfp
jenne

@michellejenne.eth

Yeah, supply chain attacks like this are concerning, but abandoning GitHub Actions entirely would be an overreaction. They’re incredibly useful when implemented securely. The real takeaway should be improving security practices better secret management, tighter permissions, and enhanced monitoring rather than ditching a powerful tool.
0 reply
0 recast
1 reaction