Skip to content

Cloak PFX files in external packages#4107

Merged
NikolaMilosavljevic merged 4 commits intodotnet:mainfrom
NikolaMilosavljevic:sbrp.pfx
Jan 9, 2026
Merged

Cloak PFX files in external packages#4107
NikolaMilosavljevic merged 4 commits intodotnet:mainfrom
NikolaMilosavljevic:sbrp.pfx

Conversation

@NikolaMilosavljevic
Copy link
Copy Markdown
Member

Resolves s360 violations in VMR for PFX files in source-build-reference-packages repo.

Copy link
Copy Markdown
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR adds an exclusion pattern to prevent PFX (certificate) files in the source-build-reference-packages external packages from being synchronized into the VMR, resolving s360 security violations.

Key Changes:

  • Added wildcard exclusion pattern for all PFX files within the external packages directory

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Comment thread src/source-mappings.json
Comment thread src/source-mappings.json
@dotnet-policy-service dotnet-policy-service bot requested a review from a team January 8, 2026 19:32
@dotnet-policy-service dotnet-policy-service bot requested a review from a team January 9, 2026 01:20
@NikolaMilosavljevic NikolaMilosavljevic merged commit ce6331f into dotnet:main Jan 9, 2026
9 of 11 checks passed
MichaelSimons pushed a commit to MichaelSimons/dotnet that referenced this pull request Jan 9, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants