good first issuehelp wantedmodule-environmentsmodule-filesystemmodule-security
倉庫指標
- Star
- (43,787 star)
- PR 合併指標
- (平均合併 6天 21小時) (30 天內合併 96 個 PR)
描述
Issue
When an Environment file is created, it is typically stored in the environments directory. On 'nix/BSD environments, those files are stored with world-readable perms (644 to be exact). While there is already some protection for sensitive data by using the "Secrets" checkbox, I could see people who accidentally/mistakenly still store sensitive creds and keys which could expose them.
I'd recommend you set an ACL for the Environment files to 600 by default. I can confirm that Bruno will continue to read and write to them just fine with those permissions set.