Detect Malicious Unicode in PRs
Closed this issue · 1 comments
maltfield commented
This issue will track the effort to implement some mechanism to scan commits in PRs for malicious unicode (eg bidi or homoglyph characters)
For more info, see Trojan Source
maltfield commented
I added a CI workflow to detect unicode characters to PRs in this repo, as described here:
New PRs should get a comment from the bot indicating if unicode characters are detected (or not).