Skip to content

chore(security): add CODEOWNERS for workflows and sensitive paths - #154

Merged
RevealUIStudio merged 1 commit into
testfrom
chore/add-codeowners-c828
Oct 5, 2026
Merged

RevealUIStudio merged 1 commit into
testfrom
chore/add-codeowners-c828

Conversation

@RevealUIStudio

Copy link
Copy Markdown
Owner

Summary

Add a lean .github/CODEOWNERS so GitHub requests review from @joshua-v-dev or @RevealUIStudio on workflow and security-control paths that already exist in this repo.

Owned paths:

  • /.github/CODEOWNERS
  • /.github/workflows/
  • /.github/codeql/
  • /.gitleaks.issues.toml
  • /.leakignore
  • /SECURITY.md
  • /scripts/check-client-leaks.sh
  • /scripts/check-no-private-leaks.sh

.leakignore allows the public owner login in CODEOWNERS for the private leak scan. That file has to name the account for review requests to route.

Validation

  • scripts/check-no-private-leaks.sh passed
  • scripts/check-client-leaks.sh passed
  • scripts/check-banned-fleet-parent.test.sh passed

Draft into test. No promotion.

Open in Web Open in Cursor 

Route review of workflow and existing security-control paths to the
repository owners. Allow the public owner login in CODEOWNERS for the
private leak scan, since that file must name the account.

Co-authored-by: Joshua Vaughn <founder@revealui.com>

@RevealUIStudio RevealUIStudio left a comment

Copy link
Copy Markdown
Owner Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Security soft review (soft lens) — PASS

  • Head: 7d750aa
  • P0=0 P1=0 P2=0
  • Scope: CODEOWNERS hygiene only; CI green on head; no runtime auth/secret changes
  • Security does not merge, undraft, or promote. FDE last-mile on Joshua GO.

@RevealUIStudio
RevealUIStudio marked this pull request as ready for review October 5, 2026 17:46
@RevealUIStudio
RevealUIStudio merged commit 942a1de into test Oct 5, 2026
15 checks passed
@RevealUIStudio
RevealUIStudio deleted the chore/add-codeowners-c828 branch October 5, 2026 17:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants