Skip to content

Commit

Permalink
Update docs/spec/draft/threats.md
Browse files Browse the repository at this point in the history
Signed-off-by: Zachariah Cox <[email protected]>
  • Loading branch information
zachariahcox authored Dec 4, 2024
1 parent 09883c2 commit fcd0db8
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion docs/spec/draft/threats.md
Original file line number Diff line number Diff line change
Expand Up @@ -132,7 +132,7 @@ Solution: Require review for such changes.
*Example:* The intent of a producer is to require two-person review on "all changes except for documentation changes," defined as those only modifying `.md` files.
Adversary submits a malicious executable named `evil.md` and a code review is not required due to the exception.
Technically, the intent of the producer was followed and the produced malicious revision meets all defined policies.
Solution: Do not allow such exceptions.
Solution: The producer adjusts the rules to prohibit such exceptions.

</details>

Expand Down

0 comments on commit fcd0db8

Please sign in to comment.