Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Why don't you just add the SSH public keys of your CI machine to your own GitHub account?


I wouldn't want a CI to store a key that has R/W access to all my repos in all my organizations. I'm in at least 5 active organizations that I would be putting at risk


Use shadow repos just for CI and nothing else.




Consider applying for YC's Fall 2025 batch! Applications are open till Aug 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: