|
|
|
|
|
by Attummm
596 days ago
|
|
The example was just to illustrate a point about a forced push. You’re correct about keys/certs once uploaded, they should be treated as compromised, especially when the repository isn’t self-hosted. However, replacing API keys and certificates can take time, and within a large corporation, it could take months. |
|