mirror of
https://github.com/SonarSource/sonarqube-scan-action.git
synced 2026-09-23 13:18:43 +00:00
It is unlikely to be a real concern, since an attacker having the possibility to edit a pipeline can easily execute any command, but at least our step won't be involved