3 ms·
The only problem I can see it "leaking" some information? "I see this guy has 'passwords/'" on his local machine, let's somehow sneakily merge new .gitignore t
by AndrewThrowaway 4y ago
The only problem I can see it "leaking" some information?
"I see this guy has 'passwords/'" on his local machine, let's somehow sneakily merge new .gitignore to make them available publicly.
- asddubs 4y agosure, if "this guy" does "git add '*'" and neither reviews the commit, nor even does git status to see a file list of it and just pushes it straight to remote. if that's happening i think your repo might have other problems though
- pcthrowaway 4y agoI mean this doesn't really leak anything; passwords are usually stored in `.env` files anyway
- naavis 4y agoIt's not exactly best practice to store passwords in version control.
- pcthrowaway 4y agoyes I'm aware.. this is why .env should always be in .gitignore