Allstar configuration for GoogleContainerTools

Allstar is a security-policy GitHub app. It is installed for all repositories in the Angular organization. This repository contains the root configuration for the app.

Enabled Repos

Currently Allstar is enabled on only the following repositories:

In the future AllStar is planned to be enabled for all repositories in the Angular organization.

Policy Configuration

These are the settings required to be in compliance

Branch Protection

Enforce default branch true
Other enforced branches *.*.x
Require approval false
Dismiss stale reviews false
Block force push true

Outside Collaborators

  • Push access not allowed.
  • Admin access not allowed.

SECURITY.md

  • SECURITY.md required.

Binary Artifacts

  • No binary artifacts are allowed to be commited to the repository.