mirror of
https://github.com/odoo/runbot.git
synced 2025-03-22 02:45:51 +07:00
![]() Per the Github webhook documentation: 1. sha1 signatures are deprecated, github recommends sha256 (though that's unlikely to be a concern anyway), and dummy-central supports both so it should be no issue. > If possible, we recommend that you use the x-hub-signature-256 > header for improved security. 2. Non-ascii secrets are supported and should be utf8-encoded to compute signatures... that's not actually documented as github docs only mention payload encoding but it seems to make sense anyway. Also improve the warning message by replacing the signature (which is useless) by the delivery id (which could allow introspecing the hook or something). |
||
---|---|---|
.. | ||
__init__.py | ||
dashboard.py | ||
reviewer_provisioning.py |