Reader small image

You're reading from  Automating Workflows with GitHub Actions

Product typeBook
Published inNov 2021
PublisherPackt
ISBN-139781800560406
Edition1st Edition
Tools
Right arrow
Author (1)
Priscila Heller
Priscila Heller
author image
Priscila Heller

Priscila Heller was born and raised in Brazil, where she obtained a bachelor's degree in Journalism. She moved to the United States in 2011, where she has been living ever since. After working in many different fields, she found a career opportunity in Tech, and went back to school to pursue a degree in Information System Technology. In 2016 Priscila joined GitHub as an Enterprise Support Agent. Over the years she was promoted a few times, and today she is a Senior Manager of Premium Support. Priscila believes in the power of technology, education, and communication. She considers the democratization of knowledge and information to be invaluable for the cultural, social, economic, and scientific development of society and humanity.
Read more about Priscila Heller

Right arrow

Securing your GitHub Actions

Now that you have learned how to create GitHub Actions workflows from scratch – and how to customize existing workflows templates – you have seen how the secrets context is often used within those workflows. Using secrets is the most important security practice you can adopt to keep your GitHub Actions features safe. However, there are other good practices that you should consider. This section will present the following best practices:

  • Secrets – how to create and use them
  • Securely adding third-party actions to your workflow
  • Best practices for securing self-hosted runners

Let's look at these in more detail.

Secrets – how to create and use them

Secrets are encrypted environment variables that you can store at the repository, environment, or organization levels. Organization-level secrets are outside the scope of this book.

A brief overview

Except for the GITHUB_TOKEN secret – more...

lock icon
The rest of the page is locked
Previous PageNext Page
You have been reading a chapter from
Automating Workflows with GitHub Actions
Published in: Nov 2021Publisher: PacktISBN-13: 9781800560406

Author (1)

author image
Priscila Heller

Priscila Heller was born and raised in Brazil, where she obtained a bachelor's degree in Journalism. She moved to the United States in 2011, where she has been living ever since. After working in many different fields, she found a career opportunity in Tech, and went back to school to pursue a degree in Information System Technology. In 2016 Priscila joined GitHub as an Enterprise Support Agent. Over the years she was promoted a few times, and today she is a Senior Manager of Premium Support. Priscila believes in the power of technology, education, and communication. She considers the democratization of knowledge and information to be invaluable for the cultural, social, economic, and scientific development of society and humanity.
Read more about Priscila Heller