Open Bug 2016598 Opened 17 hours ago Updated 16 hours ago

Assess use of external app depfu in Mozilla's GitHub organization: Mozilla Frontend Infra

Categories

(mozilla.org :: Github: Administration, task)

Tracking

(Not tracked)

People

(Reporter: kala, Unassigned, NeedInfo)

Details

Hello, I would like to add the depfu app to Mozilla Frontend Infra to help manage dependency updates. It’s already been approved for Mozilla following the outcome of bug 1972377.

** Which repositories do you want to have access? (all or list)
Mozilla-frontend-infra / firefox-performance-dashboards

** Are any of those repositories private?
No

** Provide link to vendor's description of permissions needed and why, or general documentation link for either the app or action
Read access to Dependabot alerts, checks, commit statuses, and metadata
Read and write access to code, issues, and pull requests

** If an app - please provide the Install link
https://depfu.com/

Thank you!

Hi Kala,

Checking our list of approved apps from security, Depfu has only been approved for use in the Mozilla org (https://github.com/MoCo-GHE-Admin/Approved-GHE-add-ons/blob/main/Applications/depfu.md).

Sandeep and/or Clovis, would you mind reviewing this use case? Thank you.

Flags: needinfo?(sseehra)
Flags: needinfo?(cfoji)
You need to log in before you can comment on or make changes to this bug.