From 2ef7a9f63a7637197ac5df384d20829e79008d01 Mon Sep 17 00:00:00 2001 From: svc-rat-appsec <156364227+svc-rat-appsec@users.noreply.github.com> Date: Wed, 11 Sep 2024 17:19:51 +0100 Subject: [PATCH] APPSECTOOLS-18577 Sec Onboard: Repo Contact Info (#15) Co-authored-by: Biraj Prajapati --- .security_config/security_contact.yaml | 37 +++----------------------- 1 file changed, 3 insertions(+), 34 deletions(-) diff --git a/.security_config/security_contact.yaml b/.security_config/security_contact.yaml index f69897284..c11f53035 100644 --- a/.security_config/security_contact.yaml +++ b/.security_config/security_contact.yaml @@ -17,13 +17,7 @@ owners: # map users into WoW. This might be the manager or tech lead # for this repo. users: - - corp:CHANGEME - # Groups are optional, but allow you to point to existing AD/LDAP - # user groups (CNs), prefixed with 'corp:'. This might be your - # team's existing DL group or similar. You may remove 'groups' or - # keep it empty if you are not using any groups. - groups: - - corp:CHANGEME + - corp:martin.slota # Specify how you would like to be contacted if security finds an issue # in your code. You must provide at least one contact method. You may @@ -31,31 +25,6 @@ owners: # 'false' for cases where you'd like to list a contact method for # completeness, but don't actually want us to send automated alerts to it. contact: - jira: - - project: CHANGEME - component: CHANGEME_OPTIONAL - notify: true - slack: - - channel: CHANGEME - notify: true email: - - address: CHANGEME@workday.com - notify: false - -# Which services does the code in this repo support? -# Service names should match those in https://wolinks.com/servicenames. -# This field also supports some special values for repos that do not -# directly host code for production services, including: -# - LIBRARY: For cases where the repo is a library imported by prod services -# - BUILDTOOL: For cases where the repo is a tool that builds prod services -# - LEGACY: For cases where the repo is no longer in use -# - NONE: For cases where the repo does not support prod services or fall -# into any of the other categories above. -services: -- CHANGEME - -# Which service account(s) does your team use with artifactory? You may -# this or leave a blank list if this repo does not store build artifacts -# in artifactory. -service_accounts: -- CHANGEME + - address: martin.slota@workday.com + notify: false \ No newline at end of file