We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent e4102c3 commit e82057dCopy full SHA for e82057d
baseline/OSPS-AC.yaml
@@ -290,8 +290,8 @@ controls:
290
- id: OSPS-AC-04.01
291
text: |
292
When a CI/CD task is executed with no permissions specified, the
293
- project's version control system MUST default to the lowest available
294
- permissions for all activities in the pipeline.
+ CI/CD system MUST default the task's permissions to the lowest
+ permissions granted in the pipeline.
295
applicability:
296
- Maturity Level 2
297
- Maturity Level 3
0 commit comments