Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
dpcx
3 months ago
|
parent
|
context
|
favorite
| on:
How we exploited CodeRabbit: From simple PR to RCE...
It updates the existing PR with the tests, I believe. They'd still get reviewed and go through CI.
tadfisher
3 months ago
[–]
Right, the downside being that the app needs write access to your repository.
rahkiin
3 months ago
|
parent
[–]
Writing to PR branches should really be some new kind of permission.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: