Hacker News new | ask | show | jobs
by spondyl 1491 days ago
As someone who works at a company that used Heroku (I shut down our relatively dormant account) and Travis CI, this was a fun exercise.

This is not exactly related to the topic but in the course of this wider fiasco, we actually uncovered a bug in Github's audit logging.

The Travis CI app was removed at an org level by a Travis employee in the Middle East and to my knowledge, this wasn't publicised in advance so at first glance, it seemed kind of concerned.

Anyway, that org level event didn't actually propogate up to the enterprise/umbrella level. That is, you can have an umbrella consisting of multiple Github orgs and the audit logs are supposed to roll up into the umbrella audit log.

Anyway, we got confirmation a couple of days ago that it should be fixed now but worth a note if you used Github audit logs to respond to the Heroku incident or the Travis CI one