Grilled Cheese

ExploreLog inSign up
Terms of UsePrivacy PolicyCommunity StandardsHelpGet the app

Grilled Cheese is a product of Village Compute

Version devBuilt at: 2026-10-10 01:38:52 EDT

Explore

PostsPeople
LatestRanked
@donwebmedia.bsky.socialOct 3, 2026, 5:54 AM

Pipeline CI/CD seguro: commit a producción sin sustos

Como armar un pipeline CI/CD seguro con GitHub Actions, Docker y OIDC sin exponer secrets ni romper produccion. Guia 2026 con ejemplos reales

#cicd #githubactions #docker #kubernetes #oidc

@qiita-trending.bot.chrs.toOct 3, 2026, 5:20 AM

Github Actionsでデプロイして環境変数が読み込めずUncaught Error: supabaseUrl is required.

#GitHubActions

@canerkaseler.bsky.socialOct 1, 2026, 10:00 PM

A GitHub Actions workflow should be boring in the best possible way: predictable triggers, clear job names, useful logs, and failures that tell you what to fix. #GitHub #GitHubActions #DevOps

@canyesilyurt.comOct 1, 2026, 7:31 PM

GitHub Actions just expanded data retention! Now checks, runs, and statuses are covered. This is genuinely useful for debugging flaky pipelines and tracking down old issues. Nice quality of life update. #GitHubActions #DevOps

@sergiocuellar.bsky.socialOct 1, 2026, 2:39 PM

GitHub Actions usage insights creep up across organizations, revealing workflow inefficiencies. A new tool enables org-wide visibility into CI health without manual workflow changes. 🛠️🔄 #GitHubActions #DevOps #CIHealth

@canyesilyurt.comOct 1, 2026, 2:00 PM

The new Actions Runner Controller (ARC) v0.15.0 release just dropped! For anyone managing self-hosted GitHub Actions runners on Kubernetes, this is a useful update. Good to see the controller evolve. #GitHubActions #Kubernetes

@lookbackmargin.blogOct 1, 2026, 3:24 AM

GitHub Actionsにロックファイルが来るぞ #GitHubActions - Qiita qiita.com/access3151fq...
ふうん。自分のプロジェクトと同関係するか分からない

@lockhead.devSep 30, 2026, 1:30 PM

The honest bit from my refresher video:

My promotion workflow rebuilds artifacts from the tag instead of packaging once and promoting that exact build. It works. It's also not really promotion. Fixing it is on the list.

👉 https://lckhd.eu/uTlHas

#CICD #GitHubActions

@stackflag.bsky.socialSep 30, 2026, 8:50 AM

CVE-2026-44791 - n8n
An authenticated user with permission to create or modify workflows in n8n can bypass a security patch and potentially gain full control over the host. This can happen if users…

Too many irrelevant or confusing CVEs? Use stackflag.com

#n8n #GitHubActions #npm #CVE #infosec

@stackflag.bsky.socialSep 30, 2026, 8:50 AM

CVE-2026-44790 - n8n
An attacker with permission to create workflows in n8n can read sensitive files on the server. This could lead to a full server compromise if left unaddressed. To fix this,…

Too many irrelevant or confusing CVEs? Use stackflag.com

#n8n #GitHubActions #Rootnpm #CVE #infosec

@stackflag.bsky.socialSep 30, 2026, 8:40 AM

CVE-2026-44789 - n8n
An attacker with permission to edit workflows can exploit a weakness in n8n's HTTP Request node, potentially allowing them to execute malicious code on the instance. This issue…

Too many irrelevant or confusing CVEs? Use stackflag.com

#n8n #GitHubActions #npm #CVE #infosec

@lockhead.devSep 30, 2026, 7:00 AM

Same builder, opposite structure

One project runs two separate pipelines. This one, Pegasus Galaxy, my browser + mobile game, runs one multi-stage GitHub Actions pipeline: parallel tests, three frontends, promotion across environments.

👉 https://lckhd.eu/q3XiMq

#CICD #GitHubActions

@securityonline.bsky.socialSep 30, 2026, 2:02 AM

A CVSS 10 GeoServer Cloud vulnerability in a GitHub Actions workflow could have leaked repository secrets. No abuse found, and the workflow is gone.

#GeoServer #GeoServerCloud #GitHubActions #SupplyChainSecurity #CICD #DevSecOps #OpenSource #SecretsLeak

@nimblepros.comSep 29, 2026, 7:00 PM

Need to deploy a .NET Web App on Azure Using GitHub Actions?

Check out this video with Phil here: https://www.youtube.com/watch?v=sCcNJy7KrZo

#GitHubActions #GitHub #Azure #dotnet

@kerberjg.bsky.socialSep 29, 2026, 12:06 PM

Cool #GithubActions trick~
If you're using a remote reusable workflow and want to use an action from that same remote repo, at the same commit, do this:

- uses: $/.github/actions/workflow-extra-action

Prepending the path with `$` does the trick 💚

docs.github.com/en/actions/r...

@hugovalters.bsky.socialSep 29, 2026, 9:00 AM

Your GitHub Actions pipeline runs random Marketplace code with your secrets. pull_request_target makes it worse. Here's the autopsy:

https://www.valtersit.com/guides/gitlab/github-actions-your-pipeline-is-only-as-secure-as-the-random-code-you-copied/

#GitHubActions #DevSecOps #SupplyChain

@qiita-trending.bot.chrs.toSep 29, 2026, 7:20 AM

GitHub Actionsの自動マージが、次のworkflowを起動しない ― 2ヶ月「直っていない」と思い込んでいたバグの正体

#CICD #GitHubActions #GitHubCopilot #Jenkins #個人開発

@hugovalters.bsky.socialSep 28, 2026, 8:30 PM

A "chore: bump dev tooling" PR quietly pulled in [email protected], a ReDoS. npm audit on main stayed green, so nobody caught it before merge. Dependency review gates block PRs https://www.valtersit.com/guides/ci_cd/dependency-review-gates-blocking-prs-with-cves/

#devsecops #githubactions #sca

@stackflag.bsky.socialSep 28, 2026, 5:40 PM

CVE-2023-29199 - vm2
The vm2 library used in several GitHub Actions and rootio projects may let attackers run code they should not be able to. Updated versions have been released that fix this risk.…

Too many irrelevant or confusing CVEs? Use stackflag.com

#vm2 #GitHubActions #npm #CVE #infosec

@canerkaseler.bsky.socialSep 28, 2026, 4:40 PM

CI should reduce uncertainty, not add ceremony. Keep the pipeline fast enough that developers trust it and small enough that failures point somewhere useful. #GitHubActions #DevOps #CICD

Load more