All artifacts are public-read

#2 · open · 0 comments

View on GitHub ↗

ryansb

Right now there's no cross-account security model built in to CROP. To make testing possible across accounts, all artifacts are given the `public-read` ACL, which makes it unsuitable for any projects that contain sensitive/proprietary info.

Comments