The GitHub Actions job "CI" on rocketmq-dashboard.git/fix/audit-secret-reveals has failed. Run started by GitHub user Wang1rrr (triggered by Wang1rrr).
Head commit for run: 467ecf2c0f2acaa6aac24588bcf128d2428eb989 / wang1r <[email protected]> fix(audit): record credential reveals on cloud credentials and ACL users CloudCredentialService.getCredential and AclService.getUserCredentials are the two endpoints that return a plaintext secret, and neither left an audit row, while every mutation on the same resources is audited. A secret disclosure was therefore indistinguishable from no activity. Record REVEAL_CLOUD_CREDENTIAL and REVEAL_ACL_USER_CREDENTIALS, naming the credential but never the secret. getUserCredentials now has one exit so the Tencent path is audited too. The audit page gets labels and zh/en translations for both codes so they do not render as raw identifiers. Co-Authored-By: Claude Opus 5.5 <[email protected]> Report URL: https://github.com/apache/rocketmq-dashboard/actions/runs/37163839390 With regards, GitHub Actions via GitBox
