Comment by anttiharju
7 hours ago
One can get the ssh access with self-hosted runners but it is problematic because uncovering secrets becomes trivial.
7 hours ago
One can get the ssh access with self-hosted runners but it is problematic because uncovering secrets becomes trivial.
Uncovering secrets is usually trivial. `printenv` in a build script does that pretty reliably.
What do you mean? Simple env prints get masked as *** in logs
I guess one can always just echo the secret to a file and upload-artifact it