Done with GitHub Actions Supply Chain Attacks
Recently, there was another security incident with GitHub Actions. This time, an attacker managed to modify the . After the change, the action printed secrets to the logs which the attacker (and anyone else) could then scrape. More specifically, not only the most recent version, but "most versions of " were affected. For example,