Restrict Build Pipeline Code Execution to Build Scripts
tip
This check is currently under development and not yet implemented. Click here to learn how you can help.
Use Case
- Incubating: expected
- Active: expected
- Retiring: n/a
Description
Build Pipeline Cannot Execute Arbitrary Code from Outside of a Build Script
Details
- C-SCRM: true
- Priority Group: P11
- Mitre: CWE-94
- Sources: OpenSSF Scorecard